< ciso
brief />
Tag Banner

All news with #aws tag

2926 articles · page 74 of 147

AWS Open-Source LZA MCP Server Enables AI-Assisted

🤖 The open-source Landing Zone Accelerator (LZA) Model Context Protocol (MCP) Server enables management of LZA deployments via natural-language conversations with AI assistants. The containerized MCP endpoint provides 20 specialized tools to search documentation across LZA versions, manage configurations, monitor pipelines, and surface actionable failure insights. It integrates with IDEs such as Kiro, Amazon Q Developer, and Claude Code, uses temporary credentials per AWS security best practices, and is available now in supported commercial and GovCloud regions.
read more →

AWS Elastic Beanstalk Adds Deployments Tab with Logs

🛠️ AWS Elastic Beanstalk now includes a Deployments tab in the environment dashboard, offering a consolidated view of deployment history and real-time, step-by-step deployment logs. Previously, customers had to wait until a deployment completed and then aggregate events from multiple sources; the new tab surfaces status, events, and detailed logs while deployments are still in progress. The feature covers application deployments, configuration updates, and environment launches, and is supported across all Linux-based platform branches and available in AWS Commercial and GovCloud (US) Regions.
read more →

AWS Private CA SCEP Connector Adds AWS PrivateLink

🔒 AWS Private CA Connector for SCEP now supports AWS PrivateLink, enabling clients within an Amazon VPC to request certificates without traversing the public internet. The managed AWS Private CA Connector for SCEP uses SCEP to automate certificate enrollment and renewal for mobile, network, and IoT devices. PrivateLink removes the need for internet gateways, NAT devices, or VPNs while keeping traffic on the AWS network.
read more →

Managing the AMI Lifecycle with AMI Lineage on AWS

🛡️ This post presents the AMI Lineage solution to help organizations track and govern Amazon Machine Images (AMIs) across AWS. It explains how AWS lineage metadata (announced at the end of 2024) can be combined with a centralized Amazon Neptune graph, EventBridge, Lambda, API Gateway, and Security Hub to validate image origins, enforce SCPs, and assess CVE impact. The architecture uses a three-account model (management, security tooling, member) to centralize sensitive processing, automate compliance checks, and provide queryable lineage and remediation workflows for security teams.
read more →

AWS CDK Mixins GA: Reusable Abstractions for Constructs

🚀 AWS announced the general availability of CDK Mixins in the aws-cdk-lib, enabling developers to attach composable, reusable abstractions to any construct (L1, L2, or custom) without rebuilding existing infrastructure code. Mixins use a concise .with() syntax to add behaviors like auto-delete, bucket encryption, versioning, and block public access, and multiple Mixins can be combined into custom L2 constructs. Teams can apply Mixins across scopes or use Mixins.of() for resource-type or path-pattern filtering, helping enforce reusable security and compliance policies while preserving day-one access to new AWS features.
read more →

Amazon EC2 M8i and M8i-flex Added to Europe Regions

⚡ Amazon EC2 M8i and M8i-flex instances are now available in Europe (Ireland) and Europe (London). Powered by AWS-exclusive custom Intel Xeon 6 processors, they deliver up to 15% better price-performance and 2.5x the memory bandwidth versus previous Intel-based instances. AWS reports up to 20% higher general compute performance versus M7i, with specific workload gains—up to 30% for PostgreSQL, 60% for NGINX web applications, and 40% for deep learning recommendation models. M8i-flex targets common general-purpose sizes while M8i offers larger and SAP-certified configurations including a new 96xlarge.
read more →

Amazon Bedrock AgentCore Memory Adds Kinesis Streaming

🔔 Amazon announced that AgentCore Memory for Bedrock now supports streaming notifications for long-term memory, delivering push events to Amazon Kinesis whenever memory records are created or modified. Developers can subscribe to these streams to trigger downstream workflows, refresh application state, and build audit trails without polling. This reduces developer overhead and simplifies integration of personalized, memory-driven experiences. The feature is available in 15 AWS Regions.
read more →

AWS Glue zero-ETL adds configurable CDC for DynamoDB

⚡ AWS Glue zero-ETL now supports configurable change data capture (CDC) refresh intervals and on-demand ingestion for Amazon DynamoDB sources. You can set refresh windows from 15 minutes up to 6 days, letting teams balance data freshness and cost, and trigger immediate ingestion for urgent updates. These enhancements align DynamoDB zero-ETL integrations with SaaS sources such as Salesforce, SAP, and ServiceNow. The capabilities are available today in all regions where zero-ETL is supported.
read more →

Amazon WorkSpaces Now Offers Windows Server 2025 Bundles

🖥️ AWS now offers Windows Server 2025 bundles for Amazon WorkSpaces, available for both Personal and Core WorkSpaces. These managed bundles let customers launch Windows Server 2025 instances to run modern applications, including eligible Microsoft 365 Apps for enterprise that require newer Windows. The option introduces enhanced security and firmware protections such as TPM 2.0, UEFI Secure Boot, and Secured-core server, and is available in all Regions where WorkSpaces is offered.
read more →

Cyber fallout from Iran conflict: risks and defenses

🔒 The war in the Middle East has expanded cyber risk globally, from physical strikes on AWS data centers to waves of Iran-aligned cyber activity. Within hours of kinetic operations, hacktivists and state-aligned APTs mobilized, using DDoS, defacement, wipers and supply-chain compromises. Organizations should prioritize inventorying internet-facing assets, enforcing phishing-resistant MFA, auditing MSP and cloud dependencies, and preparing offline backups. The guidance focuses on pragmatic hardening where adversaries historically find weak spots.
read more →

Amazon S3 Account Regional Namespaces Now Available

🔐 AWS now supports account regional namespaces for Amazon S3 general purpose buckets, removing the need to find globally unique bucket names and enabling predictable, per-customer or per-team naming. To use it, include the new bucket namespace request header with the CreateBucket API or add your account regional suffix in CloudFormation templates. Security teams can enforce namespace-only creation via SCPs and IAM policies. This feature is available in 37 Regions, including AWS China and GovCloud, at no extra cost.
read more →

AWS Backup: Logically Air-Gapped Vaults Support Amazon EKS

🔒 AWS Backup now supports protecting Amazon EKS clusters with logically air-gapped vaults. These vaults store immutable backup copies that are locked by default and encrypted with AWS-owned keys or customer-managed keys, and they can hold backups in the same account or across accounts and Regions. You can target a vault as the primary backup or copy destination via the console, API, or CLI, share recovery access through AWS Resource Access Manager (RAM) or multi-party approval, and initiate direct restore jobs from the recipient account without copying first to reduce recovery time.
read more →

Amazon Neptune Now Available in AWS Hyderabad Region

🚀 Amazon Neptune Database is now available in the AWS Asia Pacific (Hyderabad) region. You can create Neptune clusters using R5, R5d, R6g, R6i, X2iedn, T4g, and T3 instance types, and deploy production-ready graph workloads with high availability and automated backups. Neptune supports both Property Graph (Gremlin and openCypher) and RDF (SPARQL) models and offers Neptune Global Database for multi-region replication. Get started via the Console, CLI, or CloudFormation.
read more →

AWS Firewall Manager Available in Asia Pacific NZ Region

🔒 AWS Firewall Manager is now available in the AWS Asia Pacific (New Zealand) Region. The service helps cloud security administrators and site reliability engineers protect applications while reducing the operational overhead of manual rule configuration and management. Customers can use Firewall Manager to create and maintain AWS WAF security policies and apply defense-in-depth controls across AWS security services and accounts.
read more →

Amazon EC2 C8id instances now available in Spain region

🚀 Amazon EC2 C8id instances powered by custom Intel Xeon 6 processors are now available in the Europe (Spain) region. They provide up to 384 vCPUs, 768 GiB of memory and 22.8 TB of NVMe SSD storage, offering up to 43% higher compute performance and 3.3× greater memory bandwidth versus prior C6id instances. C8id also delivers up to 46% better I/O performance for database workloads and up to 30% faster query results for I/O-intensive analytics, and supports Instance Bandwidth Configuration to flexibly allocate 25% between network and EBS bandwidth. These instances are suited for compute- and I/O-intensive workloads and are available via Savings Plans, On‑Demand, and Spot purchases.
read more →

Amazon EC2 C8gd and M8gd Instances Expand to More Regions

🚀 AWS has expanded availability of Amazon EC2 C8gd and M8gd instances, adding C8gd in South America (São Paulo) and M8gd in Europe (Ireland). Powered by AWS Graviton4, these instances deliver up to 30% better compute performance than Graviton3-based variants and offer up to 11.4 TB of local NVMe SSD block storage. They provide up to 50 Gbps network and 40 Gbps EBS bandwidth, come in 12 sizes, and include EFA support on the largest sizes. Customers can also adjust network and EBS bandwidth by 25% using EC2 instance bandwidth weighting to better optimize workload throughput.
read more →

Amazon EC2 R7gd Instances Launch in São Paulo Region

🚀 Amazon Web Services has made EC2 R7gd instances available in the South America (São Paulo) Region, offering up to 3.8 TB of local NVMe SSD block storage. R7gd instances are powered by AWS Graviton3 processors, paired with DDR5 memory and built on the AWS Nitro System, targeting memory‑intensive workloads such as open‑source databases, in‑memory caches, and real‑time analytics. They provide high‑speed, low‑latency ephemeral storage ideal for scratch space, temporary files, and caching.
read more →

Amazon Connect: Integrated Agent Coaching Workflows

📞 Amazon Connect now offers integrated agent coaching workflows that let contact center managers create, assign, and track coaching plans directly from evaluation scorecards within the Connect UI. Managers can attach specific customer interactions and suggested language to illustrate strengths and improvement areas, while agents acknowledge feedback and add notes to confirm understanding. All coaching history is available on a single page, reducing delays and creating accountability across the contact center.
read more →

AWS EC2 High Memory U7i Instances with 8–12 TiB RAM

🚀 Amazon Web Services has introduced High Memory U7i EC2 instances in new regions, offering a u7i-8tb.112xlarge (8TiB) in Asia Pacific (Hyderabad) and a u7i-12tb.224xlarge (12TiB) in Europe (Spain). Powered by custom fourth-generation Intel Xeon Scalable Processors (Sapphire Rapids) and DDR5 memory, the instances provide 448 and 896 vCPUs respectively, plus up to 100 Gbps for EBS and network and ENA Express. They target mission-critical in-memory databases such as SAP HANA, Oracle and SQL Server.
read more →

CloudWatch Database Insights On-Demand Now in GovCloud

🔍 Amazon CloudWatch Database Insights now offers on‑demand automated analysis in AWS GovCloud (US‑East) and AWS GovCloud (US‑West), extending ML-driven database diagnostics to government regions. The feature analyzes metrics and queries, detects anomalies against normal baselines, and provides targeted remediation steps to cut mean‑time‑to‑diagnosis from hours to minutes. To use it, enable Advanced mode for Aurora and Amazon RDS via the RDS console, AWS APIs, SDKs, or CloudFormation.
read more →