< ciso
brief />
Tag Banner

All news with #aws tag

2926 articles · page 55 of 147

ElastiCache adds CloudWatch diagnostics for node metrics

🔍 Amazon ElastiCache now publishes thirteen new Amazon CloudWatch metrics for node-based clusters to surface network throttling, memory fragmentation, and connection exhaustion without running INFO commands or manual baselining. The host- and engine-level diagnostics include network baseline percentages, allocator fragmentation, OS page-faults, connection rejects, pub/sub channel counts, and command throughput. Metrics are available in all commercial, China, and GovCloud regions at no additional cost and can be viewed in the ElastiCache monitoring tab or the AWS/ElastiCache namespace in CloudWatch.
read more →

Amazon WorkSpaces Enables Secure AI Agent Desktop Access

🤖 Amazon WorkSpaces now lets AI agents securely access and operate desktop applications within managed, enterprise-grade WorkSpaces environments. Agents built on any framework and running in cloud, on-premises, or hybrid deployments can connect with minimal code using the industry-standard MCP integration, while IT retains centralized permissions, logging, and auditing identical to human desktops. Observability includes screenshots and metrics for full visibility, and pay-as-you-go pricing supports elastic scale.
read more →

AWS IoT Core Device Location: Confidence & Metadata

📍 AWS IoT Core for Device Location now lets developers specify a confidence level (50–99%) for Cell ID, Wi‑Fi, and Cell+Wi‑Fi solvers when resolving device positions via HTTP, trading radius size for statistical certainty. It also adds a measurement type field in resolved metadata to indicate GNSS, Wi‑Fi, or BLE sources, improving data quality assessment and debugging. These enhancements are available in all supported regions.
read more →

Amazon MQ adds in-place upgrades to RabbitMQ 4.2 for brokers

🔄 Amazon MQ now supports in-place upgrades for RabbitMQ brokers, enabling upgrades from 3.13 to 4.2 without provisioning a new broker or migrating data. The upgrade preserves broker configuration, queues, exchanges, bindings, users, and policies. Eligible brokers must run on M7G (Graviton) instance types and must not use classic mirrored queues; a migration tool is available to convert those to quorum queues. Major-version upgrades will render the broker unavailable while Amazon MQ performs the operation.
read more →

Amazon Quick Integrates New Relic AI Agents for Observability

🤖 Amazon Quick now integrates with New Relic's AI agents, enabling on-call engineers, SREs, and engineering leaders to investigate incidents, run NRQL queries, and generate evidence-backed RCAs directly within the Quick workspace. After connecting to New Relic’s remote model context protocol (MCP) server, users can invoke alert insights, log analysis, transaction diagnostics, and user-impact assessments from a conversational prompt. Quick Flows can automate recurring triage runbooks or escalation steps, and responses are surfaced alongside enterprise knowledge in Spaces for context-aware outcomes. The integration is available in all AWS Regions where Amazon Quick operates.
read more →

EC2 Instance Store CSI Driver Now Available as EKS Add-on

💾 Amazon EKS now supports the EC2 Instance Store CSI driver as an EKS add-on, and you can install and manage it via the EKS console or AWS CLI. The driver exposes ephemeral NVMe-based instance store volumes as Kubernetes persistent volumes and manages their lifecycle on EC2 hosts. This feature simplifies attaching local instance storage to EKS clusters and is available in all commercial regions.
read more →

Amazon Connect Cases Supports Customer Identity Resolution

🔁 Amazon Connect Cases now automatically reassociates cases when duplicate customer profiles are merged by Amazon Connect Customer Profiles Identity Resolution, ensuring agents see a consolidated interaction history. When customers have multiple profiles from different channels or with different contact details, Identity Resolution detects and merges those duplicates and Cases brings all associated cases together under the unified profile. This reduces manual searching and the risk of incomplete context. The capability is available in multiple AWS regions.
read more →

Five Ways to Use Kiro and Amazon Q for AWS Security

🔐 AWS security teams can accelerate triage and remediation using Kiro and Amazon Q Developer. The post outlines five techniques—embedding persistent security context, accelerating Security Hub triage, remediating infrastructure-as-code, performing Well-Architected security reviews, and drafting Service Control Policies—aligned to the AWS Well-Architected Security Pillar. It highlights steering files and .amazonq/rules to codify standards, recommends staged testing and human validation, and proposes measurable metrics to track reduced time-to-triage and improved compliance.
read more →

FTC to Bar Kochava From Selling Americans' Location Data

🔒 The Federal Trade Commission will ban data broker Kochava and its subsidiary Collective Data Solutions (CDS) from selling precise geolocation data without consumers' affirmative express consent as part of a settlement stemming from an August 2022 suit. The FTC alleged Kochava supplied paid clients — via an AWS Marketplace feed — with high-volume raw latitude/longitude transactions that enabled tracking to sensitive sites. Under the proposed court order, sales or transfers of precise location data are prohibited unless consumers directly request a service and explicitly consent; the companies must also implement a sensitive location program, supplier assessments, consent withdrawal and disclosure mechanisms, incident reporting to the FTC, and retention/deletion schedules.
read more →

Amazon Bedrock AgentCore arrives in AWS GovCloud US-West

🔒 Amazon announces that Bedrock AgentCore is now available in the AWS GovCloud (US-West) Region, bringing enterprise-grade agentic AI to workloads with elevated compliance and data residency requirements. AgentCore is a managed platform for building, deploying, and operating AI agents at scale without customers managing infrastructure. Core capabilities include AgentCore Runtime for session-isolated, long-running agents; AgentCore Gateway, which uses the Model Context Protocol to convert APIs and Lambda functions into agent-ready tools with controlled access to enterprise services; AgentCore Identity for integrated authentication and permission delegation; and AgentCore Observability and Evaluations for real-time monitoring and continuous quality assessment in production.
read more →

Amazon Bedrock AgentCore Launches in AWS GovCloud (US)

🔒 Amazon announced AgentCore availability in the AWS GovCloud (US-West) region, bringing enterprise-grade agent capabilities to workloads with elevated compliance needs. AgentCore is a managed platform for building, deploying, and operating AI agents at scale without customers managing infrastructure. Its composable services—including Runtime, Gateway, Identity, Observability, and Evaluations—enable session isolation, long-running workloads, secure access to enterprise data via the Model Context Protocol, and integration with existing identity providers.
read more →

Amazon OpenSearch Cluster Insights Expands Coverage

🔍 Amazon OpenSearch Service expanded Cluster Insights to support OpenSearch 1.0 and later and Elasticsearch 6.8 and later, providing proactive cluster health and performance visibility via the Console. A new Unused Index insight identifies indices with zero search or indexing activity in the last 30 days and recommends migrating them to warm or cold storage to reduce costs. These insights surface through the Console, OpenSearch UI, OpenSearch Service Notifications, and Amazon EventBridge, and are available at no additional cost in all Regions where the service runs.
read more →

AWS Backup speeds Amazon EKS cluster backups up to 10x

🚀 AWS Backup now completes Amazon EKS cluster state backups up to 10x faster. This improvement reduces backup windows for clusters with large numbers of namespaces and Kubernetes resources from days to hours and is automatically enabled at no additional cost in supported Regions. AWS Backup is a policy-based, fully managed solution to centralize and automate protection across compute, storage, and databases.
read more →

Amazon WorkSpaces Applications adds URL redirection

🔁 Amazon WorkSpaces Applications now supports host-to-client URL redirection, automatically launching approved links from streaming sessions in the user's local browser. Administrators can configure allow and deny URL patterns via the AWS Management Console to keep sensitive applications inside the streaming environment while offloading bandwidth-heavy content such as video. The feature works for browser navigation and embedded links in applications like Microsoft Word, with host-side support for Chrome and Edge; URLs on the configured allow list open automatically in the user's default local browser.
read more →

Amazon SES Increasingly Abused in Phishing Attacks Globally

📧 Kaspersky reports a surge in phishing campaigns that abuse AWS Simple Email Service (SES) to bypass authentication and reputation-based defenses. Attackers are exploiting exposed AWS Identity and Access Management keys discovered in public repositories, configuration files, container images, backups, and open S3 buckets. They automate secret scanning, permission validation, and mass email distribution to send highly credible lures—custom HTML templates and fake document-signing notifications—that redirect victims to AWS-hosted phishing pages.
read more →

Amazon SES abused in phishing campaigns, Kaspersky warns

🔔 Kaspersky reports an increase in phishing campaigns that abuse Amazon Simple Email Service (SES) to send authenticated-looking malicious messages that can bypass reputation-based filters. Attackers are harvesting exposed AWS access keys from public repositories and assets, automating secret discovery, permission checks, and mass email distribution. Because messages originate from a trusted service, SPF, DKIM, and DMARC checks and IP blocks are often ineffective, prompting Kaspersky to recommend stricter IAM controls, MFA, key rotation, and IP restrictions.
read more →

Securing Open Proxies in Your AWS Environment: Guidance

🔒 This AWS Security Blog post explains how to identify and secure open proxies in your AWS environment to prevent abuse, protect IP reputation, and control costs. It describes common proxy types—HTTP, SOCKS, transparent, and reverse—and the risks they introduce when misconfigured on EC2 instances, containers, and serverless functions. The guidance recommends strict access controls and authentication, deploying proxies in private subnets or via AWS PrivateLink, and restricting security groups and load balancers. It also emphasizes monitoring with VPC Flow Logs, CloudTrail, and GuardDuty, automated remediation, regular assessments with Amazon Inspector, and keeping incident response runbooks current.
read more →

AWS Console Mobile App Adds Enhanced CloudWatch Alarm Tools

📱 AWS has added expanded CloudWatch Alarm investigation tools to the AWS Console Mobile App. The update consolidates interactive metric graphs, AI-generated log summaries, and natural-language log search into a single alarm view to reduce time from notification to root cause. Engineers can zoom into specific time windows, adjust time zones, run voice or typed queries, and select pre-saved Logs Insights queries. Related metrics and resources are shown alongside alarms; the app is available in all AWS Commercial Regions at no additional cost.
read more →

AWS Entity Resolution Adds Incremental ML Matching Support

🔄 AWS announces General Availability of AWS Entity Resolution incremental ML-based matching workflows. Customers can now process only newly added records rather than reprocessing entire datasets, cutting latency and infrastructure costs. The feature supports up to 50M incremental records against 1B historical records and processes 1M incremental records in under one hour.
read more →

Amazon FSx Launches in AWS Asia Pacific (New Zealand)

🚀 Amazon FSx is now available in the AWS Asia Pacific (New Zealand) Region, offering fully managed, high-performance file systems for cloud workloads. The service supports NetApp ONTAP, Windows File Server, Lustre, and OpenZFS, and handles hardware provisioning, patching, and backups. Built on current AWS compute, networking, and disk technologies, FSx aims to deliver improved performance and lower TCO while supporting reliability, security, and scalability.
read more →