< ciso
brief />
Tag Banner

All news with #aws tag

2926 articles · page 77 of 147

Amazon Lightsail Adds OpenClaw Self-Hosted AI Assistant

🤖 Amazon Lightsail now lets you deploy OpenClaw, a private self-hosted AI assistant, on your own cloud infrastructure with simple, secure defaults. Each Lightsail OpenClaw instance includes built-in security controls—sandboxed agent sessions, one-click HTTPS for TLS, device-pairing authentication, and automatic snapshots—reducing manual configuration and operational risk. Amazon Bedrock is the default model provider, and users can swap models or connect to Slack, Telegram, WhatsApp, and Discord as needed.
read more →

OpenSearch Ingestion Adds Managed Prometheus Sink Support

🚀 Amazon OpenSearch Ingestion now supports Amazon Managed Service for Prometheus as a sink, enabling fully managed, end-to-end metrics ingestion without custom forwarding infrastructure. Teams can route logs and traces to Amazon OpenSearch Service while directing metrics to Prometheus, and apply built-in transformation and enrichment to improve data quality before delivery. Metrics become queryable with Prometheus Query Language and visualizable via Amazon Managed Grafana. The sink is available in all regions where OpenSearch Ingestion is offered and can be configured through the AWS Management Console or AWS CLI.
read more →

Amazon OpenSearch Ingestion: Unified OpenTelemetry Endpoint

🔁 Amazon OpenSearch Ingestion now offers a unified ingestion endpoint that accepts all three OpenTelemetry signals—logs, metrics, and traces—through a single pipeline. Customers no longer need to create and operate separate pipelines per signal, simplifying architecture and reducing operational overhead, administrative complexity, and infrastructure cost. The unified OpenTelemetry source is available in all regions where OpenSearch Ingestion is offered and can be configured via the AWS Management Console or the AWS CLI, enabling teams to adopt OpenTelemetry incrementally without pipeline reconfiguration.
read more →

AWS EventBridge Scheduler increases CreateSchedule quota

🔼 Amazon EventBridge Scheduler now increases the default service quota for the CreateSchedule API to 5,000 requests per second in 11 AWS Regions. The change helps customers with high‑throughput schedule creation workloads onboard and scale with less friction, because many can now operate at larger scale without requesting an initial quota increase. Scheduler will scale automatically to the new default, and customers can request additional increases through the Service Quotas console.
read more →

Amazon GameLift Servers Adds UDP DDoS Protection Feature

🛡️ Amazon Web Services announced Amazon GameLift Servers DDoS Protection, a new capability that provides proactive UDP-based defense for session-based multiplayer games using GameLift Servers. The feature co-locates a relay network to authenticate client traffic with access tokens and enforce per-player traffic limits, helping prevent both targeted and volumetric DoS/DDoS disruptions while adding negligible latency. It is available at no additional cost to GameLift Servers customers and includes console and API integration with sample code for Unreal Engine and native C++.
read more →

SageMaker Unified Studio Syncs Catalog Metadata to Partners

🔁 Amazon SageMaker Unified Studio now synchronizes catalog metadata and context with Atlan, Collibra, and Alation, aligning projects, assets, descriptions, glossary terms, and hierarchies across platforms. Collibra supports bidirectional synchronization and can manage SageMaker Unified Studio data access requests, while Atlan and Alation ingest metadata from SageMaker with additional enhancements planned. The Collibra integration is provided as an open-source solution on GitHub, and setup is performed by establishing connections from each partner to SageMaker Unified Studio.
read more →

Amazon SageMaker Unified Studio Adds AWS Glue 5.1 Support

🚀 Amazon SageMaker Unified Studio now supports AWS Glue 5.1 for Visual ETL, notebook, and code-based data processing jobs. With Glue 5.1 you can run on Apache Spark 3.5.6 with Python 3.11 and Scala 2.12.18, and use updated open table formats including Apache Iceberg 1.10.0, Apache Hudi 1.0.2, and Delta Lake 3.3.2. Select Glue 5.1 from the job version dropdown to apply the runtime across Visual ETL, notebooks, and code jobs.
read more →

Kiro IDE Now Connects Remotely to SageMaker Unified

🔗 AWS now enables Kiro IDE to connect remotely to Amazon SageMaker Unified Studio, allowing data scientists, ML engineers, and developers to use their local Kiro setup — including spec-driven development, conversational coding, and automated feature generation — while running workloads on SageMaker’s scalable compute. The integration uses the AWS Toolkit extension for secure IAM-based authentication and preserves local specs, steering files, and hooks. This reduces context switching and keeps agentic development workflows within a single environment across AWS analytics and ML services. The capability is available in all Regions where SageMaker Unified Studio is offered.
read more →

AWS FINMA ISAE 3000 Type II Report Covers 183 Services

🔒 AWS announced the issuance of the Swiss FINMA ISAE 3000 Type II attestation report covering 183 services for the period 1 October 2024 to 30 September 2025. The independent attestation maps AWS controls against FINMA circulars including outsourcing, operational risks and resilience, and proposed BCM minimum standards. AWS added five services to the FINMA scope: Amazon Verified Permissions, AWS B2B Data Interchange, AWS Resource Explorer, AWS Security Incident Response, and AWS Transform. The report is available via AWS Artifact and customers are reminded that security is shared between AWS and the customer.
read more →

AgentCore Policy Controls in Amazon Bedrock Now Available

🔒 Amazon has made Policy in Bedrock AgentCore generally available, providing centralized, fine-grained controls for agent-to-tool interactions. Teams can author policies in natural language that AWS converts into Cedar and stores in a policy engine attached to an AgentCore Gateway, which intercepts traffic and evaluates requests before allowing or denying access. Operating outside agent code, this lets security, compliance, and operations enforce access rules and validate inputs without modifying agents, improving governance and visibility across deployments.
read more →

AWS Issues PiTuKri ISAE 3000 Type II Report for 183 Services

🔒 Amazon Web Services (AWS) announced the issuance of the PiTuKri ISAE 3000 Type II attestation report covering 183 services, confirming its control environment aligns with the Finnish Traficom Cyber Security Centre’s criteria. The independent report covers October 1, 2024 to September 30, 2025 and adds five services to scope: Amazon Verified Permissions, AWS B2B Data Interchange, AWS Resource Explorer, AWS Security Incident Response, and AWS Transform. Customers can obtain the attestation via AWS Artifact, and AWS reiterates that security is a shared responsibility between the provider and the customer.
read more →

LexisNexis Confirms Breach After Hackers Leak Files

🔒 LexisNexis has confirmed a breach after the threat actor FulcrumSec posted 2.04 GB of files allegedly exfiltrated from its AWS environment. The group says they exploited a React2Shell vulnerability in an unpatched React frontend container on February 24 to reach Redshift tables, VPC databases and plaintext Secrets Manager entries. LexisNexis characterizes the material as mostly legacy data from before 2020 and says it contained no Social Security numbers, driver’s license numbers, financial data, active passwords, customer search queries, client/matter data, or contracts.
read more →

Amazon: Drone Strikes Damage AWS Data Centers in Middle East

🚨 Amazon has confirmed that drone strikes damaged three AWS data centers in the United Arab Emirates and one in Bahrain, causing an ongoing outage that is affecting dozens of cloud services. The attacks caused structural and power damage and triggered fire suppression that resulted in additional water damage. Amazon is restoring physical infrastructure while pursuing software-based recovery paths and advising customers to back up and migrate workloads to unaffected regions.
read more →

Amazon OpenSearch OR2 and OM2 Now in GovCloud Regions

🚀 Amazon OpenSearch Service has expanded the OpenSearch Optimized instance family with OR2 and OM2 in AWS GovCloud (US-East, US-West). In internal benchmarks, OR2 delivers up to 26% higher indexing throughput versus OR1 (and up to 70% versus R7g), while OM2 delivers up to 15% higher throughput versus OR1 (and up to 66% versus M7g). Both instance types pair compute and local caching with S3-based managed storage, offer pay-as-you-go and reserved pricing, and come in a range of sizes to support indexing-heavy workloads.
read more →

AWS Batch adds configurable instance scale-down delay

⏱️ AWS Batch now supports a configurable scale-down delay for managed compute environments, letting operators keep instances running after jobs complete to reduce relaunch latency. The new minScaleDownDelayMinutes parameter accepts values from 20 minutes up to 1 week and is applied per instance based on when it last finished a job. You can set the delay when creating or updating a compute environment via the API or Management Console; the feature is available in all AWS Regions where AWS Batch is supported.
read more →

Standardized IAM Context Keys for AWS-Managed MCP Servers

🔐 AWS introduced standardized IAM context keys for its managed remote Model Context Protocol (MCP) servers so AI agents can operate with existing IAM credentials while enabling distinct governance controls. The two keys — aws:ViaAWSMCPService (boolean) and aws:CalledViaAWSMCP (string) — let you allow or deny MCP-initiated actions and restrict access to specific MCP servers. AWS will also simplify public endpoint authorization so AI calls use standard IAM permissions (no separate MCP actions) and plans to add VPC endpoint support for private-network enforcement and two-stage authorization.
read more →

AWS Config Adds 30 New Resource Types for Broader Coverage

🔔 AWS Config now supports 30 additional AWS resource types across key services including Amazon Bedrock AgentCore and Amazon Cognito. If you have recording enabled for all resource types, AWS Config will automatically begin tracking these new additions. The newly supported types are also available for use in Config rules and Config aggregators. This update expands visibility for discovery, assessment, audit, and remediation across Regions where each resource is available.
read more →

AWS Pricing for VPC Encryption Controls Moves to Paid

🔒 AWS is introducing pricing for VPC Encryption Controls, a regional capability that audits and enforces encryption-in-transit for traffic within and across Virtual Private Clouds. The feature supports Monitor mode to detect unencrypted flows and Enforce mode to prevent the creation or operation of resources that allow unencrypted traffic. Beginning March 1, 2026, AWS will apply a fixed hourly charge to every non-empty VPC with Encryption Controls enabled; empty VPCs enabled with the feature are not charged. When encryption is enabled on a Transit Gateway, standard VPC Encryption Controls charges apply to all VPCs attached to that Transit Gateway regardless of each VPC's mode or whether they are empty.
read more →

AWS MediaLive Adds SRT Listener Mode for Inputs/Outputs

🔒 AWS Elemental MediaLive now supports SRT Listener mode for both inputs and outputs, allowing MediaLive to wait for connections instead of initiating them. This simplifies networking by removing the need for outbound connections or static public IP addresses and complements existing SRT Caller mode. Listener inputs and outputs offer configurable latency and mandatory AES encryption and are available in all Regions where MediaLive is offered.
read more →

Amazon Lightsail Adds WordPress Blueprint with IMDSv2

🚀 Amazon Lightsail now provides a new WordPress blueprint that streamlines launching and managing a site with a guided setup wizard. The VPS image comes preinstalled and enforces IMDSv2 by default for improved instance metadata security. From the console you can attach a static IP, configure DNS, and enable HTTPS with a free Let's Encrypt certificate within minutes.
read more →