< ciso
brief />
Tag Banner

All news with #aws tag

2923 articles · page 32 of 147

Amazon Location Service enhances address and POI search

📍Amazon Location Service announced enhancements to its Places APIs, giving developers finer control over address formatting, multilingual place names, travel-optimized POI search, and drive-through data. Changes affect Geocode, ReverseGeocode, GetPlace, Suggest, Autocomplete, SearchNearby, and SearchText APIs. New parameters include AddressNamesMode, AddressNamesVariant, AddressTranslations, and TravelMode, plus a DriveThrough attribute and Parsing.AdditionalInfo in Geocode responses.
read more →

AMI-based configuration for Slurm continuous provisioning

🚀 Amazon SageMaker HyperPod now supports AMI-based configuration for Slurm clusters that use continuous provisioning, enabling nodes to be provisioned with required software and settings without managing lifecycle scripts in S3. AMI-based configuration installs components like Docker, Enroot, and Pyxis and applies Slurm accounting, SSH key management, and log rotation as nodes are added. To enable it, omit the LifeCycleConfig block via the API or select "None" under Lifecycle scripts in Custom setup in the console; an optional extension script can be provided via OnInitComplete and SourceS3Uri. This feature is available in all AWS Regions where SageMaker HyperPod is offered, and custom lifecycle scripts remain supported for advanced use cases.
read more →

AWS designated a critical third party for UK finance

🔐 Amazon Web Services EMEA Sarl (AWS) has been designated a critical third party (CTP) to the UK financial sector under the CTP regime that came into force on January 1, 2025. The regime gives the Bank of England, PRA, and FCA powers to set requirements and exercise direct oversight over designated providers. AWS will self-assess its designated Systemic Third-Party Services (STPS) against the criteria and engage with regulators while supporting customers’ operational resilience.
read more →

CISA Details Response to Exposed AWS GovCloud Keys

🔒 The US Cybersecurity and Infrastructure Security Agency (CISA) detailed its response after a contractor’s personal GitHub repository exposed AWS GovCloud credentials and internal build code. CISA’s OCIO began incident response on May 15, quickly mitigating exposure and confirming no customer data was leaked or credentials used outside CISA environments. The agency emphasized lessons learned, including stronger repo controls, improved logging, adoption of zero trust principles, and clearer reporting channels for researchers.
read more →

AWS DMS Schema Conversion Adds Offline Source Support

🛡️ AWS DMS Schema Conversion now supports Offline Source for Microsoft SQL Server, letting users extract metadata locally and upload it for conversion without direct database connectivity. This prevents firewall or VPN changes and simplifies security approvals while producing the same conversion results as connected workflows. Offline Source is suited for environments with strict access controls and is available for all DMS Schema Conversion targets at no extra conversion charge.
read more →

Amazon DocumentDB adds R8g.24xlarge and R8g.48xlarge

🚀 Amazon DocumentDB (with MongoDB compatibility) now supports R8g.24xlarge and R8g.48xlarge instances powered by AWS Graviton4 processors with DDR5 memory. These instance sizes—R8g.24xlarge (96 vCPUs, 768 GiB) and R8g.48xlarge (192 vCPUs, 1,536 GiB)—deliver higher throughput and larger in-memory working sets for demanding workloads. Available for DocumentDB 5.0+ on Standard and IO-Optimized storage; customers can modify clusters via the Console, CLI, or SDK.
read more →

New MODBEACON Rust RAT Uses gRPC Streaming

🛡️ QiAnXin attributes a new Rust-based remote access trojan named MODBEACON to the China-linked Silver Fox cluster. The memory-resident implant uses a modular, plugin-based architecture and leverages gRPC tunnel streaming with transport borrowed from open-source proxy tools (Xray/V2Ray) for its C2 channel. Distributors push the malware via counterfeit installers promoted through SEO poisoning and host C2 infrastructure on Amazon and Cloudflare CDNs.
read more →

Smart Tiered Cache for public cloud regions

🔧 Smart Tiered Cache now supports public cloud regions by accepting a user-provided region hint. Cloudflare maps ambiguous anycast or regional unicast origins to the correct cloud region so it can select optimal primary and fallback upper tiers, improving cache efficiency and reducing hairpin latency. The feature is available via dashboard, API, and Terraform and initially supports AWS, GCP, Azure, and Oracle Cloud.
read more →

AWS DMS Schema Conversion Adds AI Agent Automation

🧭 AWS Database Migration Service (DMS) Schema Conversion now integrates AI agent automation via the AWS MCP Server. Agents like Kiro, Claude Code, and Cursor can connect and run migration workflows from IDEs using natural language, performing tasks such as creating projects, browsing source metadata, converting schemas, and exporting results. The dms-schema-conversion skill provides predefined procedures and operational sequencing to guide agents and reduce trial-and-error, and agents can assist with converting stored procedures, functions, and triggers. This capability is available for all existing DMS Schema Conversion engine pairs at no additional charge; regional availability is listed on the Supported AWS Regions page.
read more →

AWS Organizations applies security defaults for new orgs

🔐 AWS Organizations now applies core security controls by default when you create a new organization via the AWS Organizations console. The service automatically attaches service control policies (SCPs) that prevent member accounts from leaving or closing themselves, giving CloudOps and central security teams immediate protection from day one. These defaults are intentionally lightweight and fully editable or disableable to avoid disrupting legitimate operations while establishing governance for new or migrating enterprises.
read more →

AWS enables subsidiary qualification sharing

🔔 AWS Partner Central now lets partners share qualifications across connected partner and seller accounts, enabling consolidation of partnership standing beyond revenue attribution. Partners can share Associate qualifications including specializations, certifications, and select program enrollments across subsidiary and primary accounts, with subsidiary display names updated to show affiliation and tier recalculated using combined scorecard metrics. Partner Revenue Measurement (PRM) continues to attribute combined revenue, while qualification sharing yields a unified public profile and consolidated scorecard. This capability is available today in all commercial AWS Regions and can be self-serviced through AWS Partner Central under Account Connections.
read more →

AWS adds OAuth support for MCP Server access

🔐 AWS Sign-In now supports OAuth for connecting agents to the AWS MCP Server, enabling browser-based and headless authentication that leverages existing IAM, IAM Identity Center, and federated sign-in methods. The update includes dynamic client registration, token introspection and revocation, new CloudTrail elements, global condition keys, and a headless OAuth API. Agents discover OAuth endpoints, register via DCR, and use authorization code or client credentials flows to obtain short-lived tokens. Administrators can govern OAuth access using standard IAM policies plus OAuth-specific condition keys and monitor activity via CloudTrail.
read more →

OAuth support for the AWS MCP Server released

🔐 You can now connect AI agents directly to the AWS MCP Server using AWS Sign-In and industry-standard OAuth. Agents may authenticate without extra software and reuse existing AWS identities, sign-in methods, IAM permissions, and governance controls. Developers can authorize agents interactively via a browser or programmatically with headless flows, while administrators govern access with IAM policies and new OAuth features.
read more →

GhostApproval flaw exposes AI coding assistants' risks

🛡️ A Wiz report details "GhostApproval," a vulnerability pattern in six AI coding assistants that lets malicious repos use symlinks to escape sandboxes and trick human approvers into authorizing writes outside the workspace. Vendors including AWS, Cursor and Google patched quickly; others acknowledged or had already fixed the issue. Analysts warn this reflects a category-wide design problem where human-in-the-loop prompts can be misleading and enterprises must treat these tools as privileged software and enforce stronger controls.
read more →

Amazon EC2 C8id, M8id, and R8id expand regions

🚀 Amazon EC2 C8id, M8id, and R8id instances are now available in additional regions, including Asia Pacific (Mumbai) and multiple Europe Regions (London, Stockholm). Powered by custom Intel Xeon 6 processors, they deliver up to 43% higher performance and 3.3x more memory bandwidth versus the prior generation. These instances offer up to 384 vCPUs, 3 TiB memory, and 22.8 TB NVMe SSD storage, and support Instance Bandwidth Configuration for flexible network and EBS allocation. Customers can purchase them via Savings Plans, On-Demand, and Spot offerings.
read more →

Amazon EC2 M8gd and R8gd arrive in GovCloud

🚀 Amazon EC2 M8gd and R8gd instances are now available in AWS GovCloud (US-East) and (US-West). These Graviton4-powered instances provide up to 11.4 TB of local NVMe SSD storage, up to 50 Gbps network and 40 Gbps EBS bandwidth, and up to 30% better performance versus Graviton3. Customers can adjust network and EBS bandwidth by 25% using instance bandwidth weighting and use EFA on the largest sizes.
read more →

Timestream for InfluxDB emits events to EventBridge

🔔 Amazon Timestream for InfluxDB now publishes lifecycle events to Amazon EventBridge for instance and cluster state changes, including creation, deletion, scaling, parameter updates, maintenance, and reboots. Events cover both successes and failures and are sent to the default event bus with source aws.timestream-influxdb. This enables programmatic automation, alerting, and audit/event routing to targets like AWS Lambda, Step Functions, SQS, SNS, and cross-account buses.
read more →

AWS Client VPN adds four more regions globally

🔒 AWS Client VPN is now available in Canada West (Calgary), Mexico (Central), New Zealand, and Taipei. The fully managed service lets remote workers securely connect to AWS and on-premises resources without hardware VPN appliances. It uses a pay-as-you-go model and provides centralized management and monitoring through a single console. Customers can consult AWS product, documentation, and pricing pages for details.
read more →

AWS Partner Central unveils AI lead prospecting

🤖 AWS Partner Central introduces Partner Lead Prospecting, an AI-powered capability for ACE-eligible AWS Partners to accelerate lead conversion. Building on earlier lead enrichment features, it generates personalized sales plays, call scripts, and email outreach tailored to the customer's industry and each partner's solutions. The feature integrates a partner's portfolio into prospecting content to reduce manual research and drafting. Partner Lead Prospecting is available globally to all ACE-eligible partners via the Leads page or the MCP server.
read more →

SageMaker HyperPod adds Slurm deep health checks

🔍 Amazon SageMaker HyperPod now supports deep health checks for Slurm clusters created with continuous provisioning, enabling proactive verification of GPU accelerator health on running instances. Continuous provisioning allows asynchronous scaling of instance groups without all-or-nothing failures, and deep health checks validate hardware as nodes come online. Results and progress are visible via the SageMaker console and APIs, and failing instances are isolated and recovered automatically.
read more →