AWS News Weekly

Flo Motlik - theserverlessway.com

Weekly Summaries of all AWS News and Releases

  1. 1D AGO

    AWS News Apr 20 - Apr 26

    This week: Lambda Durable Execution SDK brings year-long workflow checkpointing to Java developers, S3 adds ten checksum algorithms for data integrity, and CloudWatch Logs Insights now supports JOIN queries across log groups. Plus MSK Replicator gains external cluster migration, Aurora Serverless v4 delivers 30% better performance, and Bedrock AgentCore lets you prototype agents without orchestration code. Identity & Directory Managed Microsoft AD: Auto-upgraded to Windows 2016, adds LAPS support Managed Microsoft AD: Kerberos encryption audit logs to CloudWatch Migration & Landing Zone Transform: Automates Control Tower/Organizations/IAM setup, exports as CFN/CDK/LZA Contact Center Connect: Pass customer context into calls for instant recognition Connect Outbound: Hourly segment refresh, priority dialing by 10 attributes Connect: Agentic voice AI expands to 10 locales Connect: 8 new AI agent metrics (goal success, faithfulness, tool accuracy) Storage S3 Express One Zone: S3 Inventory support for directory buckets S3: 10 checksum algorithms added, auto-validates on upload Streaming & Kafka MSK Replicator: Enhanced logs, bidirectional sync, external Kafka→Express Observability CloudWatch Logs Insights: JOIN and sub-query across log groups CloudWatch Pipelines: Natural language log processor config Containers & Kubernetes EKS: 7 new IAM condition keys (private endpoints, KMS, version, deletion) EKS Hybrid Nodes: Gateway automates VPC-to-pod networking Database DocumentDB: In-place upgrade v5→v8, 7x faster queries, 5x compression Aurora Serverless: 30% faster, smarter scaling, scales to zero Compute & Lambda Lambda Durable Execution SDK: GA - checkpointing, pause up to 1 year Lambda: Mount S3 buckets as file systems via S3 Files EC2: Hide managed service resources from console/API IoT & Edge IoT Greengrass 2.17: Non-root Linux, nucleus lite (36→4MB), TPM 2.0 VMware & Windows Elastic VMware Service: Includes Windows Server licensing Backup & Governance Backup Policies: Direct targeting for Redshift Serverless, Aurora DSQL Location & Address Location Service: Bulk address validation (US/CA/AU/UK) with geocoding AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    25 min
  2. APR 20

    AWS News Apr 13 - Apr 19

    This week: AWS Interconnect goes multicloud with Google Cloud support and Azure coming in 2026, Secrets Manager adds post-quantum encryption to protect against future threats, and new C8in instances deliver 600 Gbps networking. Plus CloudWatch gets cross-region telemetry management and Aurora D-sequel launches a dedicated PHP connector. Networking Interconnect Last Mile: Branch/DC to cloud via Lumen, 1-100 Gbps dynamic scaling, MACsec default Interconnect Multicloud: GA - private links to GCP now, Azure/Oracle in 2026, free 500Mbps/region Elastic DR: IPv6 support for replication and control plane Compute EC2 C8in/C8ib: GA - 6th-gen Intel, 600Gbps network (C8in), 300Gbps EBS (C8ib), 43% faster than C6in EC2 C8gn/M8gn/R8gn: 48xlarge/metal now 120Gbps EBS, 480K IOPS (2x previous) Storage FSx: Cross-region backup copy now supports opt-in regions ECR Pull Through Cache: Auto-syncs OCI referrers (signatures, SBOMs, attestations) Analytics Redshift: Top-K query optimization via min/max block skipping, no config needed OpenSearch Serverless: Derived Source reduces storage by reconstructing _source on-the-fly CloudWatch Logs Insights: Parameterized saved queries, up to 20 params, chainable AI/ML SageMaker JumpStart: 3 models - Nemotron 120B, Qwen 3.5 9B/27B SageMaker JumpStart: Optimized deployments - pick cost/throughput/latency targets, 30+ models SageMaker HyperPod: Multi-instance-type groups with priority fallback Deadline Cloud: AI troubleshooting for render failures (Maya, Blender, Houdini, Nuke) Database Aurora dsql: PHP connector with IAM token gen, connection pooling, retry logic Security Secrets Manager: Hybrid post-quantum TLS (ML-KEM) against harvest-now attacks Observtic CloudWatch: Multi-region telemetry audit/enablement, org-wide rules Managed Grafana: v12.4 - drilldown apps, CloudWatch PPL/SQL, Scenes engine Enterprise Apps Q Business: Google Drive ACL enforcement with real-time permission checks QuickSight: Sheet tooltips for hover context; multi-account login (up to 5) Amazon Q: 5 simultaneous account sessions in browser AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    9 min
  3. APR 13

    AWS News Apr 06 - Apr 12

    This week: S3 Files transforms buckets into fully-featured file systems accessible from EC2, Lambda, and containers without data duplication. Lambda response streaming reaches all commercial regions for faster LLM apps, and Cost Explorer adds natural language queries powered by Amazon Q. Plus Bedrock's Claude Mythos Preview for cybersecurity and EKS warm pools for rapid scaling. Storage S3 Files: Mount buckets as file systems on EC2/Lambda/containers, EFS-backed low-latency S3: SSE-C disabled by default for new buckets; S3 Lifecycle: Auto-pauses expiration on failed replication objects AI/ML Bedrock: Claude Mythos Preview (gated); IAM user/role cost tracking Bedrock AgentCore Browser: OS-level automation (mouse, keyboard, system dialogs) Cost Explorer: Natural language queries via Amazon Q SageMaker Studio: Serverless Apache Airflow workflows; notebook import/export Compute Lambda: Response streaming now in all commercial regions (200MB payloads) EKS: Warm pools for managed node groups EC2 Capacity Manager: Tag-based metric grouping (5 custom keys) Database RDS Blue/Green: Proxy integration for faster switchover RDS Oracle: M8i/R8i instances (15% better price-perf); Oracle Management Agent 24.1 RDS SQL Server: Latest CU/security patches (2 CVEs) Aurora PostgreSQL: Versions 17.9, 16.13, 15.17, 14.22 OpenSearch Serverless: Zstandard compression (32% smaller indexes) OpenSearch: Graviton4 i8ge instances (60% better compute); unified observability Networking & Security ACM: Search certificates by domain/ARN/status Transfer Family: IPv6 support for SFTP/AS2 connectors Route 53 GovCloud: DNS delegation for private hosted zones Private CA: Custom RAM permissions for cross-account sharing Developer Tools Smithy-Java GA: Type-safe clients, Java 21 virtual threads Greengrass SDK: C/C++/Rust support ( Verified Permissions: Human-readable policy store aliases End User Computing WorkSpaces: Unique DNS per PrivateLink endpoint; AI-powered Advisor Other Braket: Rigetti 108-qubit processor IVS: Redundant ingest with failover Backup: FSx support in 5 new regions CloudWatch Pipelines: Conditional processing, keep-original for compliance AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    17 min
  4. APR 6

    AWS News Mar 30 - Apr 05

    This week: AWS announces lifecycle changes for several services including App Runner and Audit Manager entering maintenance mode, Amazon Security Agent brings autonomous penetration testing to GA, and DevOps Agent launches for automated incident resolution. Plus CloudWatch gets native OpenTelemetry support with PromQL querying, S3 Vectors expands to 31 regions, and Direct Connect adds CloudFormation support. Compute & Containers ECS Managed Daemons: Deploy security/observability agents independently, one per instance, runs before app tasks ECS Managed Instances: Instance store volumes for containers, reduces costs vs EBS Lightsail: Compute-optimized bundles up to 72 vCPUs for batch/ML/gaming Database & Storage S3 Vectors: Expands to 31 regions, 2B vectors/index, 100ms latency Aurora DSQL: Official .NET and Rust connectors with IAM auth RDS Oracle on Outposts: Fully managed on-prem with Multi-AZ across racks Oracle Database@AWS: Sub-millisecond latency networking for Exadata migrations AI/ML Amazon Security Agent GA: Autonomous pen testing across AWS/Azure/GCP/on-prem DevOps Agent GA: Resolves incidents, learns apps, cuts MTTR to minutes Bedrock AgentCore Evaluations: 13 built-in evaluators, CI/CD integration Bedrock Guardrails: Cross-account safeguards from central management Transform Custom GA: Codebase analysis for 1M+ LOC, 7 managed transformations OpenSearch: Agentic AI for log analytics, natural language queries Networking Direct Connect: CloudWatch BGP metrics, CloudFormation support, 100Gbps in NZ CloudFront: BYOIP IPv6 via IPAM, SHA-256 signed URLs Observability CloudWatch: Native OTLP metrics, Query Studio with PromQL, auto-enable logging CloudWatch Logs: Lookup command for enrichment, Security Hub CSPM ingestion Container Insights: OTel metrics for EKS, 150 labels, GPU/Trainium detection Security & Compliance Private CA: CloudWatch utilization metrics Sustainability Console: Carbon emissions data without billing permissions Messaging End User Messaging: RCS for Business with SMS fallback End User Messaging Notify: OTP in minutes, 200+ countries Service Lifecycle Maintenance mode Apr 2026: App Runner, Audit Manager, CloudTrail Lake, IoT FleetWise Sunset planned: RDS Custom for Oracle, WorkMail, WorkSpaces Thin Client AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    24 min
  5. MAR 30

    AWS News Mar 23 - Mar 29

    This week: Aurora PostgreSQL joins the AWS Free Tier with express configuration for instant serverless setup, Lambda Managed Instances gets a major boost to 32GB memory and 16 vCPUs, and Step Functions adds 28 new service integrations including Bedrock AgentCore. Plus SageMaker HyperPod continuous provisioning, ParallelCluster P6B300 support, and Amazon Q launches in Tokyo, London, and Frankfurt regions. Compute Lambda: 32GB RAM/16 vCPUs, 4096 file descriptors (4x increase) EC2 I8ge: Graviton4, 120TB NVMe, 60% better compute vs I3en GameLift: EC2 5th-8th gen instances (Graviton, DDR5) ECS: FIPS compliance on Graviton/GPU in GovCloud AI/ML Bedrock AgentCore: Managed session storage, Chrome policies, custom CA certs Bedrock: Palmyra Vision 7B model (document/chart analysis) SageMaker HyperPod: Continuous provisioning for Slurm clusters SageMaker: RLHF fine-tuning for 12 models (Qwen, DeepSeek, Llama) SageMaker Studio: Kiro/Cursor IDE support via AWS Toolkit SageMaker Batch: Quota management with job preemption Servertic/Step Functions Step Functions: 28 new services, 1100 API actions, Bedrock AgentCore integration Lambda Durable: Idempotent invocations from workflows Database Aurora PostgreSQL: Free Tier ($100 credits), express config (seconds to query) Aurora DSQL: Ruby pg gem connector with auto IAM tokens Storage & Data HealthOmics: Batch runs up to 100K workflows per request HealthImaging: Study/series-level IAM access control S3 Vectors: Automated ingestion via Step Functions Analytics Amazon Q: London, Frankfurt, Tokyo regions (data sovereignty) CloudWatch Logs IA: Data protection, OpenSearch PPL/SQL queries Timestream InfluxDB: CloudWatch metrics integration Networking & Security Route 53 Profiles: Granular IAM per resource type Firewall Manager: Asia Pacific New Zealand region Transfer Family: Async MDN for AS2 messaging Developer Tools ParallelCluster 3.15: P6b instances, Slurm 25.11 Storage Gateway Terraform: AL2023, IMDSv2 default AppConfig: User-targeted gradual rollouts Agent Plugin: Serverless guidance for Kiro/Claude/Cursor AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    16 min
  6. MAR 23

    AWS News Mar 16 - Mar 22

    This week: Amazon Bedrock adds NVIDIA Nemotron, GLM 5, and Minimax M2.5 models for agentic AI workloads, while AgentCore Runtime gains shell command execution and WebRTC streaming. Amazon Redshift delivers up to 7x faster dashboard queries with new compilation optimization. Plus EKS Provisioned clusters get 99.99% SLA, Lambda functions can now discover their Availability Zone, and OpenSearch 3.5 brings persistent memory for AI agents. Connect & Contact Center Connect: Email forwarding to external addresses, 9 new TTS voices, 13 new locales, London for voice AI Connect Agents: Voice AI adapts tone/pacing to customer sentiment in real-time Data & Analytics SimpleDB: Export to S3 in JSON, cross-region/account, free tool Neptune: Query S3 directly from openCypher without loading Timestream InfluxDB 3: Clusters up to 15 nodes, dynamic scaling Glue Data Catalog: IAM auth for S3 Tables and Iceberg views Redshift: 7x faster first-run queries, federated IAM Identity Center multi-region OpenSearch 3.5: Persistent memory for agents, MCP integration, LLM-powered tuning Compute & Containers SageMaker HyperPod: Borrow idle GPU capacity beyond quotas SageMaker Training Plans: Extend GPU reservations 1-14 days Lambda: AZ discovery via metadata endpoint for zone-aware routing EC2 Fleet: Target interruptible Capacity Reservations in templates EKS Provisioned: 99.99% SLA, new 8XL tier doubles 4XL capacity ECR: Chainguard pull-through cache support AI/ML & Bedrock Bedrock AgentCore: Shell commands in sessions, WebRTC streaming Bedrock Models: NVIDIA Nemotron 3 Super, GLM 5, Minimax M2.5 Partner Central: Bedrock agents for co-selling automation NVIDIA NIXL: EFA support for disaggregated LLM inference Neuron DRA: K8s-native scheduling for Trainium Monitoring & Security CloudWatch Logs: HTTP ingestion with bearer tokens, 4 formats CloudWatch: Org-wide EC2 detailed monitoring rules Config: 75 new managed rules Inspector: Agentless Windows CVE scanning, consolidated KB findings Security Agent: PDF pentest reports with filtering Database & Storage RDS SQL Server Dev: Additional volumes (256 TiB), Resource Governor RDS Custom SQL Server: View/schedule OS updates DataSync: Secrets Manager for all location types AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    17 min
  7. MAR 16

    AWS News Mar 09 - Mar 15

    This week: S3 introduces reserved namespaces eliminating the hunt for globally unique bucket names, Route 53 Global Resolver goes GA with anycast DNS and built-in threat filtering, and Bedrock AgentCore adds stateful MCP server support for complex multi-turn workflows. Plus CloudWatch Logs Insights triples concurrent query limits and Neptune gets native spatial data support. Security & Identity IAM Roles Anywhere: Post-quantum certificates (FIPS 204 ML-DSA) Private CA SCEP: PrivateLink support, no public internet needed WorkSpaces: Windows Server 2025 bundles with TPM 2.0, Secure Boot Backup: Logically air-gapped vaults for EKS clusters Network Firewall: Now in AWS European Sovereign Cloud Firewall Manager: Expands to Asia Pacific New Zealand AI & ML Bedrock: TimeToFirstToken + EstimatedTPMQuotaUsage metrics Bedrock AgentCore Runtime: Stateful MCP servers in isolated microVMs Bedrock AgentCore Memory: Kinesis streaming for memory changes Neptune: Native spatial data support, 11 ISO-standard functions Analytics & Data CloudWatch Logs Insights: 100 concurrent queries (was 30) OpenSearch: Cross-account queries from single UI OpenSearch: In-place scaling beyond 3TB without blue-green Glue zero-ETL: Configurable CDC intervals (15min-6days) for DynamoDB S3: Buckets in reserved namespace, predictable naming Networking Route 53 Global Resolver: GA, anycast DNS with threat filtering Compute & Containers Lambda Managed Instances: Rust support MSK: Graviton3 M7g in Cape Town, 24% cost savings Contact Center Connect: Email analytics with PII redaction Connect: Natural language queries across 150+ metrics Connect: 40M product catalog items, 14% better accuracy Connect: Case data in analytics data lake Connect: Multi-sender email addresses per queue Connect: In-platform agent coaching workflows Developer Tools Builder ID: GitHub and Amazon account sign-in CDK Mixins: Composable abstractions with .with() syntax SAM Kiro Power: AI-assisted serverless development Elastic Beanstalk: Real-time deployment logs LZA MCP Server: Natural language infrastructure management SageMaker Studio: 1-second data preview, browser-based ETL AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    14 min
  8. MAR 9

    AWS News Mar 02 - Mar 08

    This week: Amazon Connect Health launches five AI agents for healthcare workflows, Bedrock AgentCore Policy goes GA with natural language-to-Cedar policy conversion, and SageMaker Unified Studio adds Kiro IDE remote connections plus third-party catalog sync. Plus GameLift gets built-in DDoS protection, EventBridge Scheduler bumps default limits to 5K requests per second, and Database Savings Plans now cover OpenSearch and Neptune Analytics. Data & Analytics Redshift: COPY templates for reusable ingestion params; 9 new array functions for SUPER type Redshift Serverless: Datashare permissions preserved on snapshot restore Database Savings Plans: Now cover OpenSearch + Neptune Analytics (up to 35% off) OpenSearch: Capacity Optimized blue/green deployments; O R2/O M2 instances in GovCloud OpenSearch Ingestion: Single endpoint for all 3 OpenTelemetry signals; Prometheus sink support SageMaker Unified Studio: Glue 5.1 (Spark 3.5.6, Iceberg 1.10); catalog sync with Atlan/Collibra/Alation; Kiro IDE remote connections; light mode AI & ML Bedrock AgentCore Policy: GA - centralized agent-tool access control via natural language → Cedar HealthLake: AI agent converts CCDA → FHIR R4 in days (preview) Connect Health: 5 healthcare AI agents GA (verification, scheduling, documentation, coding) Kiro: Lambda durable functions power for long-running workflow guidance Elastic Beanstalk: AI-powered health diagnostics via Bedrock Compute & Infrastructure EC2 I8ge: Graviton4, 60% better compute, 55% better storage perf vs I4g (EU) Batch: Configurable instance idle time (20min–1 week) SageMaker HyperPod: Built-in Grafana observability for Nova Forge training GameLift: Built-in DDoS protection with relay network (no extra cost) Security & Management Config: 30 new resource types (Bedrock AgentCore, Cognito, GameLift, DataBrew) IAM: In-service role creation panel (EC2, Lambda, EKS, ECS, Glue) Multi-party approval: Test approval runs to validate approver teams EventBridge Scheduler: 5K RPS default for CreateSchedule (11 regions) Developer Tools Lightsail: OpenClaw self-hosted AI assistant with Bedrock backend AWS News Feed: Whats new at AWS For help with your AWS Infrastructure check out flomotlik.me or email flo@flomotlik.me For detailed show notes check out awsnewsweekly.com

    11 min

About

Weekly Summaries of all AWS News and Releases