< ciso
brief />
Tag Banner

All news with #aws tag

2926 articles · page 96 of 147

AWS Payment Cryptography Now Available in Hyderabad, Paris

🔐 AWS Payment Cryptography is now available in Asia Pacific (Hyderabad) and Europe (Paris), enabling customers with latency-sensitive payment applications to deploy or migrate cryptographic operations closer to their workloads. The fully managed service simplifies payment-specific cryptographic operations and key management, scales elastically, and is assessed for PCI PIN and PCI P2PE compliance. Organizations can reduce dependence on dedicated payment HSMs and use these regions for additional multi-region high availability.
read more →

AWS Marketplace: Mandatory POs and Custom Messaging

🔒 Administrators can now require buyers to provide purchase orders when subscribing to products through AWS Marketplace, with requirements enforceable for both public and private offers and across multiple pricing models. Administrators may also add a custom message on the procurement page to communicate policy guidance, approval steps, and support contacts. These capabilities integrate with Private Marketplace, enabling curated catalogs and centralized governance without blocking purchasing agility. The controls help finance, procurement, and software-asset teams improve cost allocation, ensure compliance at point of sale, and streamline procurement-to-pay.
read more →

AWS Payment Cryptography Adds AS2805 Support in Sydney

🔐 AWS Payment Cryptography is now available in the Australia (Sydney) Region and adds AS2805 functionality. The update enables migration of node-to-node payment workloads to an elastic, AWS-managed service that uses PCI-certified HSMs, removing the need for standalone hardware appliances. The service integrates with AWS IAM and AWS CloudTrail and supports standard AWS CLI/SDK tooling to simplify deployment and compliance verification.
read more →

AWS IAM Identity Center Now Available in Taipei Region

🔔 AWS has expanded IAM Identity Center to 37 AWS Regions with official availability in Asia Pacific (Taipei). The service is the recommended way to manage workforce access, offering single sign-on, centralized multi-account access, and integration with existing identity sources. It powers personalized experiences in AWS applications such as Amazon Q and supports user-aware data access controls for services like Amazon Redshift. IAM Identity Center is available at no additional cost in supported regions.
read more →

Amazon OpenSearch adds writable warm tier on OI2 instances

🔁 Amazon OpenSearch Service introduces a multi-tier storage option using OpenSearch Optimized (OI2) instances that combine local instance storage with Amazon S3 to enhance durability and performance. The architecture provides a hot tier for frequently accessed data and a writeable warm tier on OI2 (sizes large–8xlarge) that supports writes and automated age-based rotation via Index State Management. Warm capacity is addressable up to five times the local cache, and standard Managed Storage charges apply.
read more →

AWS Security Incident Response Expands to 10 Regions

🔒 AWS Security Incident Response is now available in ten additional opt-in AWS Regions across Africa, Asia Pacific, Europe, and the Middle East. The service streamlines the incident response lifecycle through automated security finding monitoring and triage, AI-powered investigation, and containment capabilities. Customers also receive 24/7 direct access to a dedicated AWS security team that responds within minutes, helping scale operations, accelerate recovery, and reduce operational overhead.
read more →

AWS Adds C8i and C8i-flex EC2 Instances in Singapore

🚀 Amazon EC2 C8i and C8i-flex instances are now available in the Asia Pacific (Singapore) region, powered by custom Intel Xeon 6 processors built exclusively for AWS. These instances provide up to 15% better price-performance and 2.5x the memory bandwidth compared with previous Intel-based EC2 generations, and up to 20% higher performance versus C7i instances. AWS highlights workload-specific improvements — up to 60% faster for NGINX, 40% for deep learning recommendation models, and 35% for Memcached — and positions C8i-flex for many compute-intensive, partially utilized workloads while C8i targets memory-intensive, sustained-CPU use with sizes up to a new 96xlarge and two bare-metal variants. Instances can be purchased On-Demand, via Savings Plans, or Spot.
read more →

AWS Lowers Payment Cryptography API and Key Pricing

🔽 AWS reduced AWS Payment Cryptography API request prices by up to 63% and introduced a fourth pricing tier to better accommodate high-volume workloads. The update also moves key billing from a flat-rate model to tiered key pricing and unifies pricing across all Regions. Changes are effective December 15, 2025 and are applied automatically to all customers. The managed service supports PCI-aligned cryptographic operations, helping organizations reduce reliance on dedicated payment HSMs and scale key management and payment processing more cost-effectively.
read more →

Crypto-mining Campaign Targets Amazon EC2 and ECS Resources

⚠️ Amazon GuardDuty and AWS automated monitoring identified a coordinated crypto‑mining campaign beginning November 2, 2025, that used compromised IAM credentials to deploy miners on Amazon EC2 and Amazon ECS. Attackers enumerated quotas and permissions, launched large EC2 fleets and ECS Fargate tasks from a malicious Docker Hub image, and used persistence techniques such as disabling API termination and creating public Lambda URLs. GuardDuty Extended Threat Detection correlated signals to surface critical attack sequences and AWS provides IoCs and mitigation guidance including strong identity controls, CloudTrail logging, Runtime Monitoring, and remediation playbooks.
read more →

Amazon Disrupts GRU Hackers Targeting Edge Devices

🔒 Amazon Threat Intelligence disrupted active operations attributed to GRU-linked hackers who targeted customer cloud infrastructure by abusing misconfigured edge devices. The multi-year campaign, observed since 2021 and focused on Western critical infrastructure and the energy sector, shifted in 2025 from zero-day exploitation to targeting exposed management interfaces on routers, VPN gateways, and network management appliances. Amazon isolated compromised EC2 instances, shared indicators, and advised audits, credential monitoring, and AWS controls like isolating management interfaces, restricting security groups, and enabling CloudTrail, GuardDuty, and VPC Flow Logs.
read more →

AWS IoT Device Management: Dynamic Payloads for Commands

🔧 AWS IoT Device Management commands now support dynamic payloads and parameter validation, allowing developers to create reusable command templates with placeholders that are populated at execution time. Parameter validation rules verify values before execution to reduce errors and enforce expected formats or ranges. This makes it easier to send similar commands with variable settings—such as different thermostat temperatures—while streamlining command management across device fleets.
read more →

Amazon Connect adds detailed context to real-time alerts

🔔 Amazon Connect real-time metric alerts now report the specific agents, queues, contact flows, or routing profiles that exceeded thresholds, eliminating the need for manual investigation. For example, alerts on elevated queue wait times will include the exact queues affected so managers can reassign staff promptly. These enriched notifications can be delivered via email, Tasks, and Amazon EventBridge, and the capability is available in all regions where Amazon Connect is offered. The change is designed to accelerate operational response and improve customer experience.
read more →

AWS Direct Connect Opens First Hanoi Location in CMC Tower

🔌 AWS opened a new AWS Direct Connect location at the CMC Tower in Hanoi, Vietnam, enabling private, dedicated network access to all public AWS Regions (except China), AWS GovCloud Regions, and AWS Local Zones. The site offers dedicated 1 Gbps, 10 Gbps, and 100 Gbps connections, with MACsec encryption available for 10 Gbps and 100 Gbps links. This is the first Direct Connect location in Vietnam and is designed to deliver a more consistent network experience than internet-based connections. Organizations can use this location to establish private, physical connections between AWS and their data centers, offices, or colocation environments.
read more →

Compromised IAM Credentials Fuel Large-Scale AWS Crypto Mining

🚨 Amazon detected a campaign on Nov 2, 2025 that used compromised IAM credentials to rapidly deploy cryptocurrency miners across ECS Fargate and EC2, with miners running within ten minutes of initial access. The adversary used DryRun-based discovery to validate permissions, created service-linked roles and dozens of ECS clusters, and registered a malicious DockerHub image to launch mining with the RandomVIREL algorithm. Attackers also set disableApiTermination=True on EC2 instances to hinder remediation; Amazon recommends enforcing MFA, least privilege, temporary credentials, container scanning, CloudTrail logging and enabling GuardDuty.
read more →

AWS Artifact Adds Self-Service Access to Prior Reports

📁 AWS Artifact now provides self-service access to previous versions of compliance reports, eliminating the need to contact AWS Support or account representatives. Customers with the IAM permission artifact:ListReportVersions—included in the managed policy AWSArtifactReportsReadOnlyAccess—can view prior SOC, ISO, and C5 report versions directly in the console by selecting available versions. Availability of historical coverage varies by compliance program, and the feature is generally available in US East (N. Virginia) and AWS GovCloud (US-West).
read more →

Amazon SageMaker AI Launches in Asia Pacific (NZ) Region

🚀Amazon announced that SageMaker AI is now available in the Asia Pacific (New Zealand) AWS Region. Starting today, developers and data scientists in New Zealand can build, train, and deploy machine learning models locally using the fully managed SageMaker AI platform. The service removes much of the operational overhead across the ML lifecycle, helping teams move from experimentation to production more quickly and consistently. Customers should review AWS documentation and pricing to get started.
read more →

AWS Security Incident Response Adds Slack Integration

🔗 AWS Security Incident Response now integrates with Slack, enabling bidirectional case creation and automatic data replication so teams can create and update cases from either the Security Incident Response console or Slack. Each case is mapped to a dedicated Slack channel with comments and attachments syncing instantly, and responders are added automatically to accelerate engagement. The open-source solution on GitHub leverages EventBridge and a modular architecture and includes guidance for using AI assistants such as Amazon Q Developer or Kiro to extend integration targets beyond Slack.
read more →

AWS cuts carbon footprint reporting lag to 21 days

🌿 AWS now publishes customer carbon footprint data within 21 days of usage, reducing the previous reporting lag of up to three months. Estimates are published between the 15th and 21st of the month following usage and are available via the Customer Carbon Footprint Tool (CCFT) in the AWS Billing and Cost Management console. The CCFT dashboard retains 38 months of historical data to support trend analysis and faster emissions and cost-reduction decisions.
read more →

Amazon EC2 M8i Instances Expand to Five Additional Regions

🚀 Amazon Web Services has expanded availability of EC2 M8i instances to Asia Pacific (Seoul, Tokyo, Sydney, Singapore) and Canada (Central). Powered by AWS-exclusive Intel Xeon 6 processors, M8i offers up to 15% better price-performance and 2.5x memory bandwidth versus prior Intel-based instances, and up to 20% higher performance than M7i. These SAP-certified general purpose instances include 13 sizes, two bare-metal options, and a new 96xlarge for the largest workloads.
read more →

Amazon Reveals Years-Long GRU Campaign Targeting Energy

🛡️ Amazon's threat intelligence team disclosed a years-long campaign tied with high confidence to the GRU-affiliated APT44 (also tracked as FROZENBARENTS/Sandworm), which targeted Western critical infrastructure from 2021–2025. The actor shifted from zero-day exploitation to abusing misconfigured customer network edge devices and exposed management interfaces on AWS-hosted instances, enabling packet capture, credential harvesting, and credential replay against energy, telecom, and cloud providers. Amazon observed exploitation of WatchGuard (CVE-2022-26318), Atlassian Confluence (CVE-2021-26084, CVE-2023-22518), and Veeam (CVE-2023-27532), notified affected customers, disrupted active operations, and recommended audits, stronger authentication, and monitoring for unexpected access and credential replay.
read more →