AWS News - 2026-04-20
2026-04-20
最終更新: 2026-04-23 22:20:41 JST
AI による概要
この日の最大の話題は、2026 年 4 月 16 日に発表された Anthropic の Claude Opus 4.7 が Amazon Bedrock で利用可能になったことです。100 万トークンのコンテキストウィンドウとエージェント型コーディング性能の向上を備え、Kiro IDE/CLI にも展開されました。日本語ブログでは AI-DLC (AI 駆動開発ライフサイクル) の富士通事例や Kiro CLI のヘッドレスモード紹介、週刊 AWS/週刊生成 AI が公開されました。機械学習ブログでは Bedrock AgentCore と Nova 2 Sonic によるオムニチャネル注文、AI エージェントのツールテスト用 ToolSimulator、NVIDIA RTX PRO 6000 Blackwell 搭載の G7e インスタンスによる推論高速化が紹介されました。What's New では S3 Express One Zone の S3 Inventory 対応、DocumentDB の 5.0→8.0 インプレースアップグレード、EKS の IAM 条件キー拡張、複数の MSK Replicator 機能強化、Amazon Connect のエージェント型音声機能拡張などが発表。セキュリティでは AWS Encryption SDK for Python の脆弱性 CVE-2026-6550 が公開されました。
主要トピック
Claude Opus 4.7: Amazon Bedrock で提供開始、100 万トークンコンテキストと Kiro 対応
AI エージェント/ML: Bedrock AgentCore と Nova 2 Sonic、ToolSimulator、G7e インスタンス
AI 駆動開発 (AI-DLC): 富士通事例と Kiro CLI ヘッドレスモード
データ/ストレージ: S3 Express One Zone の Inventory、DocumentDB 8.0 インプレース、MSK Replicator 強化
コンタクトセンター/運用: Amazon Connect の音声・モジュール機能拡張、EKS IAM 条件キー
セキュリティ: AWS Encryption SDK for Python の脆弱性 CVE-2026-6550
AWS What's New
AWS Managed Microsoft AD is now available on Windows functional level 2016
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/aws-managed-microsoft-ad-2016-functional-level/
- Published: 2026-04-20 16:00:00
- Fetched: 2026-04-21 05:03:43
Starting today, all AWS Directory Service for Microsoft AD (AWS Managed Microsoft AD) directories run on Windows functional level 2016. The upgrade to Windows functional level 2016 has been applied automatically to all existing AWS Managed Microsoft AD directories. The functional level upgrade includes enhanced authentication mechanisms and improved security for privileged access management, helping you better protect your Active Directory infrastructure in the cloud.
This upgrade provides LAPS (Local Administrator Password Solution), which helps you manage local administrator passwords on domain-joined computers by automatically generating unique, complex passwords, and storing them securely in Active Directory.
This is enabled in all AWS Regions where AWS Managed Microsoft AD is available, except in the Middle East (UAE) and Middle East (Bahrain) Regions. To learn more, see the AWS Directory Service Administration Guide.
AWS Managed Microsoft AD now supports Kerberos Encryption audit event logs
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/aws-managed-microsoft-ad-kerberose-encrption-logs/
- Published: 2026-04-20 16:00:00
- Fetched: 2026-04-21 08:39:09
Starting today, AWS Managed Microsoft AD supports forwarding Kerberos Encryption audit event logs (Event IDs 201–209) to Amazon CloudWatch Logs. These logs provide visibility into the encryption types used by your applications and services, helping you identify which resources are using RC4 encryption versus AES encryption. This visibility allows you to decide whether to upgrade clients to AES encryption (recommended for improved security) or maintain RC4 support based on your environment's compatibility requirements.
To get started, navigate to your AWS Managed Microsoft AD directory Network and Security tab in the AWS Directory Service console and enable log forwarding to Amazon CloudWatch Logs. You can then review the Kerberos Encryption audit events to understand your current encryption settings. To learn more, see Enabling Amazon CloudWatch Logs log forwarding for AWS Managed Microsoft AD.
This feature is available in all AWS Regions where AWS Managed Microsoft AD is available, except in the Middle East (UAE) and Middle East (Bahrain) Regions.
AWS Transform automates landing zone creation in migration workflows
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/aws-transform-automates-landing-zone/
- Published: 2026-04-20 20:59:00
- Fetched: 2026-04-23 22:20:41
AWS Transform now supports landing zone creation directly within migration workflows, delivering a secure, multi-account AWS environment tailored to your migration needs. By consolidating orchestration into AWS Transform, it automates the setup that previously required configuration across AWS Control Tower, AWS Organizations and AWS Identity and Access Management, accelerating migration readiness with a ready-to-deploy target environment. This new capability extends the end-to-end automation that AWS Transform provides across the migration lifecycle from discovery and migration planning to network and server migration, so that preparing the target environment is no longer a separate workstream.
Whether starting from scratch or extending an existing AWS organization, AWS Transform aligns landing zone foundations with AWS best practices, recommending optimal account structures based on migration data and business requirements. Customers can customize Organizational Unit (OU) hierarchies, accounts, and Service Control Policies (SCP), then choose between agent-managed deployment or generate Infrastructure as Code templates downloadable in CloudFormation, AWS CDK, or Landing Zone Accelerator (LZA) formats for self deployment.
The landing zone creation capability is now available in AWS Transform across all supported target regions.
To learn more, visit the AWS Transform User Guide.
Amazon Connect adds touchtone buffering for AI-powered self-service
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-connect-touchtone-buffering/
- Published: 2026-04-20 21:29:00
- Fetched: 2026-04-22 04:21:38
Amazon Connect now enables you to automatically pass customer context to personalize self-service experiences from the moment a call connects. When a customer initiates a call from a website, mobile app, or notification link, you can automatically pass context, such as customer IDs, session references, and campaign codes, into the call. AI agents use this context to recognize the caller, understand the reason for the call, take action, and resolve issues without requiring callers to re-identify themselves or repeat why they are calling.
To learn more about these features, see the Amazon Connect Administrator Guide. These features are available in all AWS regions where Amazon Connect is available.
Amazon S3 Express One Zone now supports S3 Inventory
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/s3-express-one-zone-supports-s3-inventory/
- Published: 2026-04-20 22:00:00
- Fetched: 2026-04-21 03:59:47
Amazon S3 Express One Zone, a high-performance S3 storage class for latency-sensitive applications, now supports S3 Inventory. S3 Inventory provides a scheduled alternative to S3's synchronous List API. You can configure S3 Inventory to generate reports on a daily or weekly basis that list your stored objects within an S3 directory bucket or with a specific prefix, and their respective metadata and encryption status. You can simplify and speed up business workflows and big data jobs with S3 Inventory, and verify encryption status of your objects to meet business, compliance, and regulatory needs.
You can use the AWS CLI, AWS SDKs, or S3 API to configure a daily or weekly inventory report for all the objects within your S3 directory bucket or a subset of the objects under a shared prefix. As part of the configuration, you can specify a destination S3 bucket for your S3 Inventory report, the output file format (CSV, ORC, or Parquet), and specific object metadata necessary for your business application, such as object name, size, last modified date, storage class, multipart upload flag, and encryption status.
S3 Inventory for S3 Express One Zone is available in all AWS Regions where the storage class is available. For pricing information, visit the S3 pricing page. To learn more, visit the S3 Inventory documentation.
Amazon MSK Replicator now supports log forwarding for replication visibility
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-msk-replicator-logs/
- Published: 2026-04-21 00:00:00
- Fetched: 2026-04-21 08:39:09
詳細を表示
Amazon MSK Replicator now delivers replicator logs to give you end-to-end visibility into replication health. Replicator logs surface critical replication events and errors along with guidance on how to resolve each issue, enabling you to troubleshoot faster without requiring AWS Support.
MSK Replicator is a feature of Amazon MSK that automates data replication between Kafka clusters, eliminating the need to manage custom replication infrastructure or configure open-source tools. Until now, you could use Amazon CloudWatch metrics to track replication progress and get visibility into replication health. With this launch, MSK Replicator further simplifies diagnosing issues during replication with actionable log entries that surface the most common replication errors including insufficient permissions on source topics, partition quota exhaustion on target clusters, and records exceeding size limits, along with prescriptive guidance on how to resolve each issue. MSK Replicator also logs steady-state replication activity including offset commits, topic discovery events, and any errors or warnings from Kafka clients used internally by the replicator, giving you end-to-end visibility into replication health. You can enable log delivery when creating or updating a Replicator using the Amazon MSK console, AWS CLI, or AWS CloudFormation and forward logs to Amazon CloudWatch, Amazon S3, or Amazon Data Firehose.
This capability is supported in all AWS Regions where MSK Replicator is available. Log delivery costs depend on the destination service you choose, refer to the pricing pages for Amazon CloudWatch, Amazon S3, and Amazon Data Firehose.
To learn more, visit the MSK Replicator documentation, and product page.
Amazon MSK Replicator now supports enhanced consumer offset synchronization for bidirectional replication
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-msk-replicator-enhanced-consumer-offset-synchronization/
- Published: 2026-04-21 00:00:00
- Fetched: 2026-04-21 08:39:09
Amazon MSK Replicator now provides enhanced consumer offset synchronization for bidirectional replication, enabling applications to resume processing from the correct position when moving across Kafka clusters. This capability enables you to move producer and consumer applications between clusters independently, in any order, without the risk of data loss.
MSK Replicator is a feature of Amazon MSK that automates data replication between Kafka clusters, eliminating the need to manage custom replication infrastructure or configure open-source tools. Previously, while replicating bidirectionally with MSK Replicator, consumer group offsets were synchronized only when producers and consumers were active on the same cluster, requiring careful sequencing of application migrations between clusters and increasing the risk of duplicate message processing during rollbacks. With this launch, MSK Replicator synchronizes consumer group offsets across source and target clusters regardless of where producers are running, enabling applications to move between clusters without coordination constraints or data duplication risks.
You can enable enhanced consumer offset synchronization when creating a Replicator using the Amazon MSK console, AWS CLI, or AWS CloudFormation. This capability is supported in all AWS Regions where MSK Replicator is available.
To learn more, visit the MSK Replicator documentation, product page, pricing page, and this AWS blog post.
MSK Replicator now supports replication from external Apache Kafka clusters to MSK Express Brokers
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-msk-replicator-external-kafka-cluster-support/
- Published: 2026-04-21 00:00:00
- Fetched: 2026-04-21 08:39:09
詳細を表示
Amazon MSK Replicator now supports data replication from external Apache Kafka clusters—including on-premises, self-managed on AWS, or other cloud providers—to Amazon MSK Express brokers. This capability simplifies workload migration to MSK Express Brokers, supports disaster recovery by using MSK Express-based clusters as a failover or backup target, and enables data distribution across hybrid and multi-cloud environments.
MSK Replicator is a feature of Amazon MSK that automates data replication between Kafka clusters, eliminating the need to manage custom replication infrastructure or configure open-source tools. MSK Express brokers are designed to deliver up to 3 times more throughput per broker, scale up to 20 times faster, and reduce recovery time by 90 percent as compared to Standard brokers running Apache Kafka. With this launch, you can now use MSK Replicator to replicate data from external Kafka clusters to Express brokers on Amazon MSK. You can also use MSK Replicator to replicate data from Amazon MSK Express to external Kafka clusters for reliable failback or multi-cloud data distribution. Unlike self-managed replication tools, MSK Replicator lets you retain your original Kafka topic names during replication while automatically avoiding infinite replication loops. It also synchronizes consumer group offsets bidirectionally, enabling you to move producers and consumers across clusters independently, in any order, without coordination constraints or the risk of data loss.
This new capability is supported in all AWS Regions where MSK Express brokers are available.
Watch a demo on YouTube to see it in action, or visit the MSK Replicator documentation, product page, pricing page, and this AWS blog post to learn more.
Amazon CloudWatch Logs Insights introduces JOIN and sub-query commands
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/cloudwatch-logs-insights-join-sub-query/
- Published: 2026-04-21 01:00:00
- Fetched: 2026-04-22 11:10:19
Amazon CloudWatch Logs Insights introduces JOIN and sub-query commands to the Logs Insights query language to accelerate log analysis. Customers who need to analyze logs across multiple log groups or correlate data from different sources no longer need to run multiple queries and manually combine the results.
With JOIN and sub-query commands, you can accelerate troubleshooting across scenarios such as correlating application and infrastructure errors across different services and log groups, analyzing security events across multiple services, or tracking user sessions across distributed systems. For example, you can use a sub-query to identify services with more than 20 errors in the last day, then use JOIN to correlate those results with performance data from a different log group to calculate average response times, helping you prioritize which high-error services also have the worst performance impact — all in a single query.
JOIN and sub-query commands are available today in all commercial AWS Regions. To learn more, see the Amazon CloudWatch Logs documentation.
Amazon Connect outbound campaigns now supports hourly segment refresh
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-connect-campaign-hourly-refresh/
- Published: 2026-04-21 01:56:00
- Fetched: 2026-04-21 14:23:52
Amazon Connect Outbound Campaigns now allows you to refresh campaign segments as frequently as every hour, reduced from the previous minimum of 24 hours. This enables campaigns to reach newly eligible customers throughout the day rather than waiting for the next daily run.
With hourly segment refresh, your campaigns stay current with changing business conditions across all campaign types. A collections team can start outreach to newly delinquent accounts the same afternoon they are flagged. A healthcare provider can begin appointment reminder calls within an hour of a new booking. A multi-step journey, such as sending an SMS reminder followed by a voice call if the customer doesn't respond, can enroll new customers throughout the day instead of in a single daily batch.
This capability is available in all AWS Regions where Amazon Connect Outbound Campaigns is offered at no additional cost. To get started, enable the Refresh option in your campaign configuration in the Amazon Connect console or via the API. To learn more, see the Amazon Connect outbound campaign documentation.
Amazon EKS enhances cluster governance with new IAM condition keys
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-eks-iam-condition-keys/
- Published: 2026-04-21 02:48:00
- Fetched: 2026-04-21 05:03:43
詳細を表示
Amazon Elastic Kubernetes Service (EKS) now supports seven additional IAM condition keys for cluster creation and configuration APIs, enhancing the governance controls available through IAM policies and Service Control Policies (SCPs). Organizations managing multi-account environments require centralized mechanisms to enforce security and compliance requirements consistently across all clusters without relying on manual processes or post-deployment checks. This expansion of EKS IAM condition keys further enables proactive policy enforcement, providing organizations with more granular control to establish guardrails for cluster configurations.
Organizations can now enforce private-only API endpoints (eks:endpointPublicAccess, eks:endpointPrivateAccess), require customer-managed AWS KMS keys for secrets encryption (eks:encryptionConfigProviderKeyArns), restrict clusters to approved Kubernetes versions (eks:kubernetesVersion), mandate deletion protection for production workloads (eks:deletionProtection), specify control plane scaling tiers (eks:controlPlaneScalingTier), and enable zonal shift capabilities for high availability (eks:zonalShiftEnabled). These condition keys apply to CreateCluster, UpdateClusterConfig, UpdateClusterVersion, and AssociateEncryptionConfig APIs, integrating seamlessly with AWS Organizations SCPs for centralized governance across accounts.
The new IAM condition keys are available in all AWS Regions where Amazon EKS is available at no additional charge. To learn more about Amazon EKS IAM condition keys, see the Amazon EKS User Guide and the Service Authorization Reference for Amazon EKS. For information about implementing Service Control Policies, see the AWS Organizations documentation.
Amazon DocumentDB (with MongoDB compatibility) now supports in-place upgrade from version 5.0 to 8.0
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-documentdb-mongodb-in-place-version-upgrade-5-0-to-8-0/
- Published: 2026-04-21 03:00:00
- Fetched: 2026-04-21 05:03:43
Amazon DocumentDB (with MongoDB compatibility) supports in-place major version upgrade (MVU) from version 5.0 to 8.0. You can upgrade with just a few clicks in the AWS Management Console or via the AWS SDK or AWS CLI — no new clusters, no endpoint changes, and no index rebuilds required.
Upgrading to version 8.0 delivers performance and cost improvements: query latency improves by up to 7x and storage compression improves by up to 5x, so your applications run faster on less storage, reducing your costs. Version 8.0 also adds new capabilities including collation, views, new aggregation stages and operators, enhanced text search with text index v2, and vector index builds that are up to 30x faster.
In-place MVU from version 5.0 to 8.0 is available in all AWS Regions where Amazon DocumentDB 8.0 is available, at no additional cost.
To get started, see the in-place MVU documentation. To learn more about Amazon DocumentDB 8.0, visit the documentation.
AWS IoT Greengrass v2.17 now supports non-root installation and introduces new light weight components
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/aws-iot-greengrass-v217/
- Published: 2026-04-21 04:00:00
- Fetched: 2026-04-21 06:42:33
詳細を表示
AWS IoT Greengrass v2.17 is now available, enabling you to run the edge runtime as a non-root user on Linux systems and deploy lighter-weight components that use significantly less memory. AWS IoT Greengrass is an Internet of Things (IoT) edge runtime and cloud service that helps customers build, deploy, and manage device software at the edge. With this release, you can install and run AWS IoT Greengrass v2.17 as a non-root user, making it easy for you to meet security requirements in enterprise and regulated environments where root access is prohibited. The release also adds an uninstall life cycle capability that automatically activates when you remove a component from a device, simplifying dependency management.
Moreover, the release introduces the following new nucleus lite capabilities to reduce resource consumption at the edge:
- Secure Tunneling lite component that uses just 4MB of memory, down from 36MB in the standard component.
- Updated Fleet Provisioning component that supports Trusted Platform Module (TPM) 2.0 for cryptographic operations and secure device identity management.
- PKCS#11 (Public Key Cryptographic Standard) interface that enables AWS IoT Greengrass nucleus lite component to easily authenticate with AWS IoT Core using keys and certificates stored in a Hardware Security Module (HSM).
AWS IoT Greengrass v2.17 is available in all AWS Regions where AWS IoT Greengrass is offered. To learn more about AWS IoT Greengrass v2.17 and its new features, visit the AWS IoT Greengrass documentation. Follow the Getting Started guide for a quick introduction to AWS IoT Greengrass.
Amazon Connect expands agentic voice speech-to-speech experiences to three new AWS Regions and ten locales
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-connect-aws/
- Published: 2026-04-21 04:33:00
- Fetched: 2026-04-22 05:48:04
Amazon Connect now expands agentic voice speech-to-speech experiences to three additional AWS Regions: Asia Pacific (Seoul), Asia Pacific (Singapore), and Europe (Frankfurt), along with new locales including Australian English, British English, Singaporean English, Spanish, French, German, Italian, and Korean. With these updates, you can deliver natural, human-like voice AI experiences to a broader range of customers across more regions and languages.
Amazon Connect's agentic self-service capabilities enable AI agents to understand, reason, and take action across voice and messaging channels to automate routine and complex service tasks. Connect's agentic speech-to-speech voice AI agents understand not only what your customers say but how they say it, adapting voice responses to match tone and sentiment while maintaining natural conversational pace.
To learn more about this feature, see the Amazon Connect Administrator Guide. To learn more about Amazon Connect, AWS’s AI-native customer experience solution, visit the Amazon Connect website.
Amazon EVS now offers Microsoft Windows Server Licensing
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-evs-windows-server-licensing/
- Published: 2026-04-21 05:05:00
- Fetched: 2026-04-21 06:42:33
詳細を表示
Today, we're announcing that Amazon Elastic VMware Service (Amazon EVS) now offers Microsoft Windows Server licensing entitlements. You can now migrate or create new virtual machines (VMs) running Windows Server OS in EVS and obtain Windows Server licensing entitlements for those VMs from AWS.
Amazon EVS lets you run VMware Cloud Foundation (VCF) directly within your Amazon Virtual Private Cloud (VPC) on EC2 bare-metal instances, powered by AWS Nitro. Using either our step-by-step configuration workflow or the AWS Command Line Interface (CLI), you can set up a complete VCF environment in just a few hours. This rapid deployment enables faster workload migration to AWS, helping you eliminate aging infrastructure, reduce operational risks, and meet critical timelines for exiting your data center.
With this latest functionality, you can now entitle your Windows Server VMs on Amazon EVS with Microsoft Windows Server. You can configure an EVS connector to your VMware vCenter Server and provide the VM IDs for those Window Server VMs you want to entitle through the Amazon EVS console or AWS CLI. Pay for only what your VMs use, on a per vCPU-hour basis. Add or remove entitlement for your VMs at any time, giving you flexibility to manage costs as your environment evolves. This newest release provides you with greater flexibility when migrating to AWS, helping meet critical data center exit timelines while maintaining your familiar VMware environment.
This feature is available in all AWS Regions where Amazon EVS is available.
For more details, read the step-by-step walkthrough on the blog post. Visit the Amazon EVS product detail page and user guide. to learn more about Amazon EVS.
Amazon EBS expands volume modification enhancement to AWS European Sovereign Cloud Region
- Link: https://aws.amazon.com/about-aws/whats-new/2026/04/amazon-ebs-four-volume-modifications-european-sovereign-region/
- Published: 2026-04-21 05:30:00
- Fetched: 2026-04-21 06:42:33
Amazon Elastic Block Store (Amazon EBS) now supports up to four Elastic Volumes modifications per volume within a rolling 24-hour window in AWS European Sovereign Cloud (Germany) Region. Elastic Volumes modifications allow you to increase the size, change the type, and adjust the performance of your EBS volumes. With this update, you can start a new modification immediately after the previous one completes, as long as you have initiated fewer than four modifications in the past 24 hours.
This enhancement improves your operational agility to immediately scale storage capacity or adjust performance in response to sudden data growth or unanticipated workload spikes. With Elastic Volumes modifications, you can modify your volumes without detaching them or restarting your instances, allowing your application to continue running with minimal performance impact.
The Elastic Volumes modifications enhancement is automatically available in the Region without requiring changes to your existing workflows. To learn more, see Modify an Amazon EBS volume using Elastic Volumes operations in the Amazon EBS User Guide.
AWS News Blog
AWS Weekly Roundup: Claude Opus 4.7 in Amazon Bedrock, AWS Interconnect GA, and more (April 20, 2026)
- Link: https://aws.amazon.com/blogs/aws/aws-weekly-roundup-claude-opus-4-7-in-amazon-bedrock-aws-interconnect-ga-and-more-april-20-2026/
- Published: 2026-04-21 00:53:21
- Fetched: 2026-04-21 01:05:22
AWS Japan Blog
Kiro CLI をプログラムから実行する:ヘッドレスモードの紹介
- Link: https://aws.amazon.com/jp/blogs/news/kiro-introducing-headless-mode/
- Published: 2026-04-20 09:14:05
- Fetched: 2026-04-20 11:24:38
富士通株式会社様との AI-DLC Unicorn Gym で見えた開発の未来
- Link: https://aws.amazon.com/jp/blogs/news/fujitsu-aidlc/
- Published: 2026-04-20 09:16:56
- Fetched: 2026-04-20 11:24:38
Opus 4.7 が Kiro で利用可能になりました
- Link: https://aws.amazon.com/jp/blogs/news/opus-4-7/
- Published: 2026-04-20 09:38:05
- Fetched: 2026-04-20 11:24:38
Amazon Bedrock での Anthropic の Claude Opus 4.7 モデルのご紹介
- Link: https://aws.amazon.com/jp/blogs/news/introducing-anthropics-claude-opus-4-7-model-in-amazon-bedrock/
- Published: 2026-04-20 10:24:14
- Fetched: 2026-04-20 11:24:38
Amazon RDS for SQL Server における追加ストレージボリュームによるストレージの改善
- Link: https://aws.amazon.com/jp/blogs/news/improving-storage-with-additional-storage-volumes-in-amazon-rds-for-sql-server/
- Published: 2026-04-20 14:21:32
- Fetched: 2026-04-20 14:37:20
ボトルネックからブレークスルーへ:Dutchie のデータベース移行の軌跡
- Link: https://aws.amazon.com/jp/blogs/news/from-bottlenecks-to-breakthroughs-dutchies-database-migration-journey/
- Published: 2026-04-20 16:43:17
- Fetched: 2026-04-20 17:00:52
週刊AWS – 2026/4/13週
- Link: https://aws.amazon.com/jp/blogs/news/aws-weekly-20260413/
- Published: 2026-04-20 17:32:11
- Fetched: 2026-04-20 19:44:36
[資料公開 & 開催報告] 初学者向けセミナー「これから始める AWS のコンテナサービス活用」を開催しました
- Link: https://aws.amazon.com/jp/blogs/news/getting-started-with-aws-container-services-202604/
- Published: 2026-04-20 17:34:58
- Fetched: 2026-04-20 19:44:36
サーバーレス関連の見逃し情報 2025 年第 4 四半期
- Link: https://aws.amazon.com/jp/blogs/news/serverless-icymi-q4-2025-ja/
- Published: 2026-04-20 22:23:33
- Fetched: 2026-04-20 23:45:59
AWS Lambda Managed Instances による高パフォーマンスアプリケーションの構築
- Link: https://aws.amazon.com/jp/blogs/news/build-high-performance-apps-with-aws-lambda-managed-instances-ja/
- Published: 2026-04-20 22:24:41
- Fetched: 2026-04-20 23:45:59
VPC 内のプライベートサービスに AWS DevOps Agent をセキュアに接続する方法
- Link: https://aws.amazon.com/jp/blogs/news/securely-connect-aws-devops-agent-to-private-services-in-your-vpcs/
- Published: 2026-04-20 23:15:11
- Fetched: 2026-04-20 23:45:59
AWS Security Blog
How to clone an AWS CloudHSM cluster across Regions
- Link: https://aws.amazon.com/blogs/security/how-to-clone-an-aws-cloudhsm-cluster-across-regions-2/
- Published: 2026-04-21 00:15:47
- Fetched: 2026-04-21 01:05:23
AWS Security Bulletins
CVE-2026-6550 - Key commitment policy bypass via shared key cache in AWS Encryption SDK for Python
- Link: https://aws.amazon.com/security/security-bulletins/rss/2026-017-aws/
- Published: 2026-04-21 04:45:34
- Fetched: 2026-04-21 05:03:44
Bulletin ID: 2026-017-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 2026/04/20 12:45 PM PDT
Description:
AWS Encryption SDK (ESDK) for Python is a client-side encryption library. We identified CVE-2026-6550, which describes an issue with a key commitment policy bypass via shared key cache.
Cryptographic algorithm downgrade in the caching layer of Amazon AWS Encryption SDK for Python before version 3.3.1 and before version 4.0.5 might allow an authenticated local threat actor to bypass key commitment policy enforcement via a shared key cache, resulting in ciphertext that can be decrypted to multiple different plaintexts.
Impacted versions:
- From 2.0 to 2.5.1
- From 3.0 to 3.3.0
- From 4.0 to 4.0.4
Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.
AWS Machine Learning Blog
Omnichannel ordering with Amazon Bedrock AgentCore and Amazon Nova 2 Sonic
- Link: https://aws.amazon.com/blogs/machine-learning/omnichannel-ordering-with-amazon-bedrock-agentcore-and-amazon-nova-2-sonic/
- Published: 2026-04-21 00:03:28
- Fetched: 2026-04-21 01:05:24
ToolSimulator: scalable tool testing for AI agents
- Link: https://aws.amazon.com/blogs/machine-learning/toolsimulator-scalable-tool-testing-for-ai-agents/
- Published: 2026-04-21 02:06:26
- Fetched: 2026-04-21 02:54:11
Accelerate Generative AI Inference on Amazon SageMaker AI with G7e Instances
- Link: https://aws.amazon.com/blogs/machine-learning/accelerate-generative-ai-inference-on-amazon-sagemaker-ai-with-g7e-instances/
- Published: 2026-04-21 04:38:10
- Fetched: 2026-04-21 05:03:45