< ciso
brief />
Tag Banner

All news with #aws tag

2920 articles · page 11 of 146

EBS Volume Clones: Cross‑Account Copy Support

🔒 Amazon Elastic Block Store (Amazon EBS) Volume Clones now supports copying volumes across AWS accounts with re‑encryption using AWS Key Management Service (AWS KMS) keys in the target account. This lets organizations segregate production and development accounts while sharing data safely. The feature supports all volume types, including unencrypted and customer‑managed KMS‑encrypted volumes, and is available via the Console, CLI, and SDKs in supported Regions.
read more →

Amazon Connect Customer Profiles: Segment Events

🔔 Amazon Connect Customer Profiles now emits segment membership events to notify when customer profiles enter or exit segments such as high-value or low-satisfaction cohorts. This removes the prior need to export full segments and run differential scripts, which caused delays and errors. Events stream to Amazon Kinesis Data Streams and include profile ID, segment name, operation type, and whether the change was real-time or from a scheduled snapshot. Real-time detection applies to standard-condition segments, while enhanced segments (Spark SQL) use configurable periodic snapshots.
read more →

AWS Private CA connectors arrive in GovCloud

🔒 AWS Private Certificate Authority (AWS Private CA) now offers the AWS Private CA Connector for Kubernetes as a managed Amazon EKS add-on and the AWS Private CA Connector for Active Directory in AWS GovCloud (US-East) and (US-West). These additions simplify certificate automation for government workloads, integrating with cert-manager to provision and renew TLS certificates in Kubernetes and enabling AD-based automatic issuance for domain-joined objects. The service secures private keys using FIPS 140-3 Level 3 HSMs.
read more →

AWS adds per-record confidence to Entity Resolution

🔍 AWS Entity Resolution now supplies per-record confidence scores for ML-based matching, replacing the prior group-level score that treated all records identically. This update lets each resolved record carry its own confidence metric, enabling differentiated activation thresholds for automated merges and lower-threshold inclusion while preserving audit-ready evidence. Existing schemas remain compatible as the RecordConfidenceLevel column now reflects per-record values, and the feature is available in all Regions where the service runs.
read more →

AWS Systems Manager expands EC2 diagnosis reach

🔍 AWS Systems Manager now diagnoses six additional root causes preventing Amazon EC2 instances and hybrid-activated nodes from becoming managed. The expanded checks include IAM permissions, SSM Agent version, instance status checks, operating system configuration, Default Host Management Configuration, and hybrid activation, in addition to prior network connectivity diagnostics. The console reports specific issues with step-by-step guidance and can run Automation runbooks to remediate some problems directly.
read more →

OpenAI GPT-6 Astra Now Available on Amazon Bedrock

🚀 Today AWS announces general availability of GPT-6 Astra from OpenAI on Amazon Bedrock. The model offers deeper reasoning, professional-quality output, advanced browser and code capabilities, and a context window up to 1 million tokens. Customers can call Astra via Bedrock APIs or configure ChatGPT Work and Codex to use the model, and AWS provides established controls for security, governance, and audit.
read more →

Timestream for InfluxDB adds custom Python plugins

🛠️ Amazon Timestream for InfluxDB now supports running custom Python plugins on managed InfluxDB 3 Core and Enterprise editions. You store plugin code in public or private repositories you control, and the processing engine fetches and executes it in response to supported triggers, enabling in-database data transformation, alerting, aggregation, and service integrations. Plugins run in a managed Python environment with the standard library and Amazon-vetted packages; private repos are authenticated via tokens in AWS Secrets Manager. To enable a plugin, configure a plugin repository in a DB parameter group, apply it to your cluster, and create triggers referencing the plugin via the influxdb3 CLI or HTTP API; the feature is available in all Regions where the service is offered.
read more →

SageMaker Feature Store adds feature-level writes

🔧 Amazon SageMaker Feature Store now supports feature-level writes, enabling updates to individual features within a record without rewriting the entire record. This reduces write latency and cost by allowing pipelines to replace read-modify-write patterns with single update calls. Multiple pipelines can independently update different features in the same feature group, simplifying ingestion logic for streaming and batch jobs. The feature is available in all Regions where SageMaker Feature Store is offered.
read more →

AWS Transform arrives in GovCloud (US-West)

🔒 AWS Transform is now available in the AWS GovCloud (US-West) Region, enabling government agencies and regulated organizations to plan and execute large-scale migrations to AWS. The service automates server migrations within an isolated environment for sensitive data and supports migrating servers to both AWS GovCloud (US-East) and GovCloud (US-West) target Regions. Supported sources include VMware, bare metal, Hyper-V, and databases; however, modernization, custom transformation, and assessment features remain available only in commercial Regions.
read more →

AWS HealthOmics adds resource fallback for WDL

🔬 Today, AWS HealthOmics introduces the resource fallback directive, allowing users to specify an ordered list of preferred accelerator types — including a final CPU fallback — for tasks in Workflow Description Language (WDL) workflows. This feature reduces time spent diagnosing and resubmitting runs when accelerators are constrained and helps keep production workflows running. HealthOmics is HIPAA-eligible and available in multiple AWS Regions to support bioinformatics at scale.
read more →

AWS adds smart cropping and optimization to DIT

🖼️ Today, AWS announced four new features for Dynamic Image Transformation for Amazon CloudFront (DIT), enhancing smart cropping with custom label detection and advanced composition controls to preserve products, text, logos, and custom objects. The update also adds enhanced automatic image optimization across devices using CloudFront's multi‑tier device detection, an interactive transformation playground for testing, and full feature parity between ECS and Lambda architectures. DIT is available in all commercial regions and four opt‑in regions.
read more →

AWS Builder ID adds recovery and third‑party MFA

🔐 AWS Builder ID now supports adding a recovery email and new self-service account recovery options to help users regain access without contacting support. You can reset forgotten passwords via primary or recovery email and restore access if an MFA device is lost by verifying both emails. Third-party sign-ins from Google, Apple, GitHub, or Amazon can now register MFA devices directly in AWS Builder ID, and users may permanently switch to an email/password sign-in if they lose a third-party account.
read more →

Nx Plugin for AWS: Scaffolding Full‑Stack Apps

🚀 Version 1.0 of the Nx Plugin for AWS is now available as an open source toolkit to scaffold full-stack applications on AWS. The plugin extends Nx with generators that create AI agents, Model Context Protocol servers on Amazon Bedrock AgentCore, APIs, websites, and databases using TypeScript and Python. Generated code includes infrastructure defined as AWS CDK constructs or Terraform modules and applies recommended practices like AWS WAF protection, CloudWatch logging, and AWS X-Ray tracing. The output is reproducible, type-safe, and yours to own with no runtime dependency on the plugin.
read more →

AWS extends EMR support to ease customer migrations

🔔 Amazon EMR will provide additional support at no extra cost for customers actively migrating from older releases. Eligible releases will receive critical security fixes and extended Standard Support on a best-effort basis through specified dates in 2027; customers must contact AWS Support with a migration plan to receive the extension. The policy covers all EMR deployment models (EMR on EC2, EMR on EKS, and EMR Serverless) across AWS Regions and recommends using the Apache Spark Upgrade Agent to move applications to current releases.
read more →

Amazon RDS adds latest CU and GDR for SQL Server

🔔 Amazon RDS for SQL Server now supports the latest Cumulative Updates (CU) and General Distribution Release (GDR) packages for multiple SQL Server versions, including 2016 SP3+GDR, 2017 CU31+GDR, 2019 CU32+GDR, 2022 CU26, and 2025 CU7. These updates address vulnerabilities tracked as CVE-2026-47295, CVE-2026-47296, CVE-2026-54118, and CVE-2026-55002. AWS recommends upgrading instances via the Amazon RDS Management Console, AWS SDK, or CLI and refers users to Microsoft KB articles and the Amazon RDS SQL Server User Guide for upgrade procedures.
read more →

Cloud Security Index Shows Provider Risk Divergence

🔍 Intruder's 2026 Cloud Security Index analyzed misconfiguration data from 3,000 organizations across AWS, Azure, and Google Cloud and found that risk profiles differ dramatically by provider. Weak IAM and missing logging are nearly universal, while exposed services, permissive firewalls, weak encryption, and misconfigured services vary widely. AWS shows high prevalence in exposed services and permissive network controls, Azure's top issues center on storage and identity, and Google Cloud's dominant problems are IAM-related. Larger organizations generally have fewer exposure-style misconfigurations but worse IAM issues, and midmarket firms take the longest to remediate.
read more →

Amazon MWAA Serverless now in AWS GovCloud

🚀 Amazon Managed Workflows for Apache Airflow (MWAA) Serverless is now available in AWS GovCloud (US-East) and AWS GovCloud (US-West). The service removes operational overhead by automatically provisioning and scaling compute resources for Apache Airflow workloads. It uses a pay-per-use model that bills only for actual workflow run time. For supported regions and setup guidance, consult the Amazon MWAA Serverless documentation.
read more →

AWS OSPAR 2026: Expanded Coverage for Singapore Banks

🔒 AWS has completed its annual OSPAR assessment (version 2.0) on July 29, 2026, confirming 167 services in scope for the AWS Asia Pacific (Singapore) Region. The OSPAR framework aligns with the Association of Banks in Singapore (ABS) Guidelines, addressing cyber hygiene, technology risk, business continuity, data security, cryptography, and software development controls. This cycle adds five services to the scope and reinforces AWS’s adherence to security expectations for Singapore’s financial services industry. Customers can obtain the report via AWS Artifact and consult the included service list for compliance reviews.
read more →

AWS adds serverless diagnostics to MCP Server

🛠️ The AWS Model Context Protocol Server (AWS MCP Server) now supports a serverless capability enabling coding agents like Claude Code and Kiro to diagnose AWS Lambda functions and connected resources. The capability lets agents inspect Lambda, Amazon API Gateway, EventBridge, S3, DynamoDB, SNS, SQS, and Step Functions, correlate errors against a 7-day baseline, surface recurring errors, retrieve deployed configurations, provide change timelines, and analyze latency. It reduces token usage by aggregating comprehensive data in a single call. The MCP Server is available via the Agent Toolkit for AWS or as a standalone installation and can access services in all commercial AWS Regions while running in US East (N. Virginia) and Europe (Frankfurt).
read more →

OpenAI launches GPT-6 Astra, crossing cybersecurity threshold

🚨 OpenAI released GPT-6 Astra and disclosed that the model crossed the company’s Critical cybersecurity threshold under its Preparedness Framework, triggering extra deployment restrictions. The model is rolling out to ChatGPT Plus, Pro, Business, Enterprise users and via the OpenAI API and AWS, with enterprise admins required to enable it manually. OpenAI reported high exploit-detection scores, priced the API access, and said Astra will refuse advanced offensive tasks for the public while supporting vetted defenders and Zero Data Retention for eligible customers.
read more →