AWS News - 2026-08-19
2026-08-19
最終更新: 2026-08-20 08:18:27 JST
AI による概要
この日は AgentCore payments の一般提供が最大のトピックです。AI エージェントが支出ガードレールを備えた状態で、大規模かつ自律的に安全に取引できるようになりました。Amazon Bedrock には SpaceXAI Grok 4.6 が追加され、OpenAI の GPT-5.6 (Terra / Luna) がインド Geo のクロスリージョン推論で利用可能になっています。Security Hub Extended のサプライチェーンセキュリティ追加については日本語解説が公開され、Chainguard と Socket によるオープンソース依存関係の来歴検証と悪意あるパッケージのブロック、OCSF 形式での検出結果連携が説明されました。国内ではセガの『ソニックランブル パーティ』を支える基盤として EKS Auto Mode × Agones、DynamoDB と ElastiCache Serverless for Valkey を採用した 2 本の事例が公開されています。医療分野では臨床試験の適格性判定と Clario による DICOM 画像からの PHI/PII 検出の事例が紹介されました。
主要トピック
エージェント決済: AgentCore payments が一般提供、支出ガードレール付きで自律的な取引を大規模に実行
基盤モデル: Bedrock が SpaceXAI Grok 4.6 に対応、GPT-5.6 (Terra / Luna) がインド Geo のクロスリージョン推論で利用可能に
サプライチェーン: Security Hub Extended のサプライチェーンセキュリティを日本語解説 (来歴検証と悪意あるパッケージのブロック)
国内事例: セガ『ソニックランブル パーティ』の EKS Auto Mode × Agones、DynamoDB / ElastiCache Serverless for Valkey 活用
医療: 臨床試験の適格性・安全性判定エージェント、Clario の DICOM 画像からの PHI/PII 自動検出
IaC: IAM Policy Autopilot が Terraform プランファイルからのベースラインポリシー生成に対応
脆弱性: OpenSearch Dashboards の資源消費問題、Amazon ion-java のメモリ増幅型 DoS
AWS What's New
Amazon EC2 High Memory U7i instances now available in AWS Europe (Zurich) region
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-ec2-high-memory-u7i-aws-europe/
- Published: 2026-08-19 00:00:00
- Fetched: 2026-08-20 03:28:05
Amazon EC2 High Memory U7i-6TB instances (u7i-6tb.112xlarge) are now available in AWS Europe (Zurich) region. U7i instances are part of the AWS 7th generation and are powered by custom fourth-generation Intel Xeon Scalable processors (Sapphire Rapids). U7i-6TB instances offer 6 TiB of DDR5 memory, enabling customers to scale transaction processing throughput in a fast-growing data environment. U7i instances offer up to 45% better price performance over existing U-1 instances.
U7i-6TB instances deliver 448 vCPUs and support up to 100 Gbps of Amazon EBS bandwidth for faster data loading and backups, 100 Gbps of network bandwidth, and ENA Express. U7i instances are ideal for customers running mission-critical in-memory databases like SAP HANA, Oracle, and SQL Server.
To learn more about U7i instances, visit the High Memory instances page.
PostgreSQL 19 Beta 3 is now available in Amazon RDS Database Preview Environment
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/postgresql-19-beta-3-amazon-rds-database-preview-environment/
- Published: 2026-08-19 01:00:00
- Fetched: 2026-08-19 06:19:10
Starting today, Amazon RDS for PostgreSQL 19 Beta 3 is available in the Amazon RDS Database Preview Environment, allowing you to evaluate the pre-release of PostgreSQL 19 on Amazon RDS for PostgreSQL.
PostgreSQL 19 Beta 3 adds new capabilities for query performance and autovacuum management. The new pg_stat_autovacuum_scores view helps you monitor and tune autovacuum prioritization. Parallel autovacuum can now use multiple workers to speed up maintenance on large tables. The new pg_plan_advice module lets you lock in efficient query plans to avoid unexpected slowdowns. Eager aggregation improves analytical queries by grouping data earlier, so queries process fewer rows and complete faster. Beta 3 also includes bug fixes and stability improvements from the Beta 2 testing period. Refer to the PostgreSQL community announcement for more details.
Amazon RDS Database Preview Environment database instances are retained for a maximum period of 60 days and are automatically deleted after the retention period. Amazon RDS database snapshots that are created in the Preview Environment can only be used to create or restore database instances within the Preview Environment. You can use the PostgreSQL dump and load functionality to import or export your databases from the Preview Environment. Amazon RDS Database Preview Environment database instances are priced as per the pricing in the US East (Ohio) Region.
IAM Policy Autopilot now supports Terraform plan files
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/iam-policy-autopilot-now-supports-terraform-plan-files
- Published: 2026-08-19 02:19:00
- Fetched: 2026-08-19 04:23:39
IAM Policy Autopilot can now generate baseline IAM policies directly from a Terraform plan file. IAM Policy Autopilot is an open source tool, launched at re:Invent 2025, that analyzes your code to deterministically create scoped-down IAM policies you can refine as your application evolves, reducing the time you spend writing IAM policies and troubleshooting access issues. Until now the tool analyzed application source code, but it was not possible to generate policies for deploying AWS infrastructure defined via Infrastructure as Code.
Now you can pass a Terraform plan file as input, and IAM Policy Autopilot applies a deterministic analysis to produce a policy scoped to the CRUD functions of the resources in that plan. The generated policies reference specific resource ARNs rather than wildcards, when possible. Supporting policy generation for deploying AWS infrastructure defined via Terraform has been the most requested capability since IAM Policy Autopilot launched, and it complements the existing Terraform-aware analysis, which cross-references Terraform resource definitions with SDK calls in your application code to resolve ARNs.
IAM Policy Autopilot is available at no additional cost and runs on your own machine. To get started, visit the IAM Policy Autopilot GitHub repository.
Amazon EC2 R8i instances are now available in Israel (Tel Aviv) region
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-ec2-r8i-israel-tel-aviv/
- Published: 2026-08-19 02:24:00
- Fetched: 2026-08-19 07:18:09
詳細を表示
Starting today, Amazon Elastic Compute Cloud (Amazon EC2) R8i instances are available in the Israel (Tel Aviv) region. These instances are powered by custom Intel Xeon 6 processors, available only on AWS, delivering the highest performance and fastest memory bandwidth among comparable Intel processors in the cloud. The R8i instances offer up to 15% better price-performance, and 2.5x more memory bandwidth compared to previous generation Intel-based instances. They deliver 20% higher performance than R7i instances, with even higher gains for specific workloads. They are up to 30% faster for PostgreSQL databases, up to 60% faster for NGINX web applications, and up to 40% faster for AI deep learning recommendation models compared to R7i.
R8i instances are a great choice for all memory-intensive workloads, especially for workloads that need the largest instance sizes or continuous high CPU usage. R8i instances offer 13 sizes including 2 bare metal sizes and the new 96xlarge size for the largest applications. R8i instances are SAP-certified and deliver 142,100 aSAPS, the highest among all comparable machines in on-premises and cloud environments, delivering exceptional performance for mission-critical SAP workloads.
To get started, sign in to the AWS Management Console. Customers can purchase these instances via Savings Plans, On-Demand instances, and Spot instances. For more information about the new R8i instances visit the AWS News blog.
Amazon MWAA Serverless now supports PythonOperator and BashOperator
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/mwaa-serverless-pythonoperator-bashoperator/
- Published: 2026-08-19 03:00:00
- Fetched: 2026-08-19 04:23:39
Amazon Managed Workflows for Apache Airflow (Amazon MWAA) Serverless now supports running custom Python functions and shell scripts directly in the serverless runtime using PythonOperator and BashOperator. With this launch, data engineering teams can execute the code patterns they rely on daily, including data transformations, format conversions, and data quality checks, without provisioning additional infrastructure.
Package your Python modules or shell scripts as code packages, upload them to Amazon S3, and reference them when creating or updating a workflow. The service snapshots your code at workflow creation time and uses that snapshot for all subsequent runs, ensuring consistency across executions.
This feature is available in all AWS Regions where Amazon MWAA Serverless is available. To learn more, visit Using Python and Bash operators.
Amazon SageMaker Unified Studio now supports data profiling and anomaly detection
- Link: https://aws.amazon.com/about-aws/whats-new/2026/05/smus-data-profiling
- Published: 2026-08-19 03:49:00
- Fetched: 2026-08-19 06:19:10
Amazon SageMaker Unified Studio now supports data profiling and anomaly detection, powered by AWS Glue Data Quality. Data stewards, engineers and analysts can generate statistical profiles of their data to understand its shape and completeness, and track how these statistics change over time. Anomaly detection helps identify when data points drift from historical patterns without requiring predefined thresholds or custom rules. These capabilities are available for both data at rest in catalog tables and data in transit within Visual ETL jobs.
With this launch, a dedicated Data profile tab on catalog tables provides on-demand and scheduled profiling that computes dataset-level and column-level statistics. As profile history accumulates, anomaly detection builds a baseline of expected behavior and flags data points that fall outside the predicted range. This is particularly useful when you may not be aware of specific thresholds, or when expected values change over time and fixed rules could become stale. For data in transit, the same profiling statistics and anomaly detection are available on the results page of any Visual ETL job with an Evaluate Data Quality transform.
This feature is available in all AWS Regions where Amazon SageMaker Unified Studio is available. To learn more, visit the Amazon SageMaker Unified Studio documentation.
AgentCore payments is now generally available in Amazon Bedrock AgentCore
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/bedrock-agentcore-payments-ga/
- Published: 2026-08-19 04:15:00
- Fetched: 2026-08-19 05:17:57
Today, AWS announces the general availability of AgentCore payments, a capability within Amazon Bedrock AgentCore that enables AI agents to autonomously discover, access, and pay for paid APIs, MCPs, and content with just a few lines of code. AgentCore payments provides the security, guardrails, and observability enterprises need to deploy transacting agents in production at scale.
AgentCore payments integrates with Coinbase and Stripe Privy wallets for microtransactions, provides payment orchestration across protocols, enforces configurable payment limits at the infrastructure layer, and delivers end-to-end observability through AgentCore Observability. At general availability, AgentCore payments includes Quick Create for Coinbase credential provisioning directly within the AgentCore console, a curated Coinbase Bazar MCP server of pay-per-use x402 endpoints via AgentCore gateway, support for the Machine Payment Protocol (MPP), and the "upto" scheme in the x402 protocol for pay-per-inference and dynamic pricing use cases.
Developers can get started using coding assistant skills such as Claude Code, Kiro, and Codex, AgentCore CLI, or AWS Management Console - follow this link.
AgentCore payments is available in the regions listed here. To learn more, visit the AgentCore payments documentation or the AWS News Blog.
To learn about pricing, visit AgentCore pricing.
Amazon Corretto August 2026 Critical Security Patch Updates
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-corretto-august-2026-security-updates
- Published: 2026-08-19 06:48:00
- Fetched: 2026-08-19 08:17:24
On Aug 18, 2026, Amazon announced critical security patch update (CSPU) for Amazon Corretto Long-Term Support (LTS) and Feature Release (FR) versions of OpenJDK. Corretto 26.0.2.11.1, 25.0.4.8.1, 21.0.12.9.1, 17.0.20.10.1, 11.0.32.10.1, and 8u504 are now available for download. Amazon Corretto is a no-cost, multi-platform, production-ready distribution of OpenJDK.
Visit Corretto home page to download Corretto 26, Corretto 25, Corretto 21, Corretto 17, Corretto 11, or Corretto 8. You can also get the updates on your Linux system by configuring a Corretto Apt, Yum, or Apk repo.
Feedback is welcomed!
AWS IAM identity federation to external services is now available in AWS European Sovereign Cloud Region
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/aws-iam-european-sovereign-cloud/
- Published: 2026-08-19 07:30:00
- Fetched: 2026-08-19 09:59:40
AWS Identity and Access Management (IAM) now enables AWS workloads in the AWS European Sovereign Cloud (Germany) Region to securely authenticate with external services using short-lived JSON Web Tokens (JWTs). The AWS European Sovereign Cloud is an independent cloud for Europe entirely located within the European Union (EU), designed to help customers meet their evolving sovereignty requirements.
With outbound identity federation, AWS workloads can securely authenticate with third-party cloud providers, SaaS providers, and self-hosted applications without using long-term credentials or implementing complex workarounds. Customers can exchange their AWS IAM credentials for cryptographically signed, short-lived JWTs, providing a simple and secure mechanism to access external services. These tokens contain rich context about the AWS workloads, enabling external services to implement fine-grained access control. Administrators can control access to token generation and enforce token properties (such as lifetime, audience, and signing algorithms) using IAM policies and audit token usage using CloudTrail logs, allowing them to meet their organization's security and compliance requirements.
To learn more, visit the outbound identity federation product page, see the IAM user guide, or read the AWS News Blog Post.
Amazon Bedrock now supports OpenAI models in India
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-bedrock-openai-india-v1/
- Published: 2026-08-19 08:30:00
- Fetched: 2026-08-19 09:59:40
Amazon Bedrock now supports the OpenAI GPT-5.6 models (Terra and Luna) in India, with India Geo cross-Region inference. Customers with regulatory requirements of in-country inferencing can now use OpenAI models at scale ensuring that inferencing is processed within India.
Cross-Region inference automatically routes inference requests across multiple AWS Regions to give you higher throughput, without you needing to manage capacity across multiple Regions. The new India Geo inference profiles—in.openai.gpt-5.6-terra for Terra and in.openai.gpt-5.6-luna for Luna—route requests only within the India geography, across AWS Regions such as Asia Pacific (Mumbai) and Asia Pacific (Hyderabad), so you can scale to meet demand while keeping data processed within India to meet data residency requirements. The models run on the bedrock-runtime endpoint with support for the Responses, Chat Completions, and Converse APIs, and work with the same account-level controls you already use for other models on Bedrock, including model invocation logging (deliverable to Amazon S3 or Amazon CloudWatch Logs), Amazon CloudWatch metrics, and cost itemization in AWS Cost Explorer and the AWS Cost and Usage Report.
OpenAI models with India cross-Region inference are available in the Asia Pacific (Mumbai) and Asia Pacific (Hyderabad) Regions. To get started, review the model cards for GPT-5.6 (Terra and Luna) and the Cross-Region inference section in the Amazon Bedrock User Guide.
Amazon Bedrock now supports SpaceXAI Grok 4.6
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-bedrock-grok-4-6/
- Published: 2026-08-19 14:18:00
- Fetched: 2026-08-19 15:36:07
Amazon Bedrock now supports SpaceXAI Grok 4.6, SpaceXAI's latest flagship model built for long-running agents and ambitious interactive and visual work. Grok 4.6 offers a 500K context window and configurable reasoning efforts (low, medium, high, xhigh).
Grok 4.6 builds on previous generations of Grok with a particular focus on staying with complex tasks across many steps, whether researching a topic, analyzing information, working across a codebase, or turning an idea into a polished application. According to SpaceXAI, it achieves frontier intelligence across several agentic coding and knowledge work benchmarks, matching other frontier models specialized for coding. With Bedrock, customers can access the model with enterprise-grade security and privacy, comprehensive monitoring and logging, and the flexibility to scale across AWS Regions with cross-Region inference.
Grok 4.6 is available in all AWS Regions where Amazon Bedrock is offered. To get started, review the model card for Grok 4.6 in the Amazon Bedrock User Guide.
Amazon Bedrock now supports SpaceXAI Grok 4.6 with Cross Region Inferencing
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-bedrock-grok-4-6/
- Published: 2026-08-19 14:18:00
- Fetched: 2026-08-20 08:18:27
Amazon Bedrock now supports SpaceXAI Grok 4.6, a frontier model built for coding, agentic tasks, and knowledge work, with US Geo and Global cross-Region inference. Customers can now access Grok 4.6 at scale with cross-Region inference routing requests across multiple AWS Regions for higher throughput and lower inference costs.
Cross-Region inference automatically routes inference requests across multiple AWS Regions to give you higher throughput, without you needing to manage capacity across multiple Regions. The US Geo inference profile—us.xai.grok-4.6—routes requests only within the US geography, so you can scale while keeping data processed within the United States to meet data residency requirements. The Global inference profile—global.xai.grok-4.6—serves requests from any commercial AWS Region where the model is available, giving you the broadest access to Bedrock capacity and the highest throughput during demand spikes, at a lower per-token cost. The model runs on the bedrock-runtime endpoint with support for the Responses, Chat Completions, and Converse APIs, and works with the same account-level controls you already use for other models on Bedrock, including model invocation logging (deliverable to Amazon S3 or Amazon CloudWatch Logs), Amazon CloudWatch metrics, and cost itemization in AWS Cost Explorer and the AWS Cost and Usage Report.
Cross-Region inference for Grok 4.6 is available in all AWS Regions where Amazon Bedrock is offered. To get started, review the model card for Grok 4.6 in the Amazon Bedrock User Guide.
Amazon EC2 R8a instances are now available in Asia Pacific (Taipei) region
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/amazon-ec2-r8a-asia-pacific-taipei/
- Published: 2026-08-19 16:51:00
- Fetched: 2026-08-20 05:21:12
Starting today, Amazon EC2 R8a instances are now available in Asia Pacific (Taipei) Region. These instances, feature 5th Gen AMD EPYC processors (formerly code named Turin) with a maximum frequency of 4.5 GHz, deliver up to 30% higher performance, and up to 19% better price-performance compared to R7a instances.
R8a instances deliver 45% more memory bandwidth compared to R7a instances, making these instances ideal for latency sensitive workloads. Compared to Amazon EC2 R7a instances, R8a instances provide up to 60% faster performance for GroovyJVM, allowing higher request throughput and better response times for business-critical applications.
Built on the AWS Nitro System using sixth generation Nitro Cards, R8a instances are ideal for high performance, memory-intensive workloads, such as SQL and NoSQL databases, distributed web scale in-memory caches, in-memory databases, real-time big data analytics, and Electronic Design Automation (EDA) applications. R8a instances offer 12 sizes including 2 bare metal sizes. Amazon EC2 R8a instances are SAP-certified, and providing 38% more SAPS compared to R7a instances.
To get started, sign in to the AWS Management Console. For more information about the new instances, visit the Amazon EC2 R8a instance page.
AWS Storage Gateway now supports FIPS-compliant private connectivity for Tape and Volume Gateway
- Link: https://aws.amazon.com/about-aws/whats-new/2026/08/storage-gateway-fips-privatelink/
- Published: 2026-08-19 19:00:00
- Fetched: 2026-08-20 06:20:42
AWS Storage Gateway now supports FIPS 140-3 validated endpoints over AWS PrivateLink for Tape Gateway and Volume Gateway. Previously, FIPS endpoints were available only over the public internet. Now you can keep FIPS-compliant traffic on the private AWS network, making it easier to use Storage Gateway for regulated workloads.
With this launch, your Tape Gateway and Volume Gateway can reach the Storage Gateway service endpoints privately through an interface VPC endpoint in your VPC, while using FIPS validated encryption. To get started, you can create a FIPS interface endpoint for Storage Gateway in your VPC, then choose the FIPS VPC endpoint option when activating your gateway. Once activated, your gateway connects to the Storage Gateway service over FIPS validated endpoint on the private AWS network. To activate a gateway with a FIPS PrivateLink endpoint, your gateway must be running software version 3.2.7 or later.
This launch is available in the eight AWS Regions where Storage Gateway offers FIPS endpoints: US East (N. Virginia), US East (Ohio), US West (N. California), US West (Oregon), Canada (Central), Canada West (Calgary), AWS GovCloud (US-East), and AWS GovCloud (US-West). To learn more, visit the AWS Storage Gateway User Guide or the product page.
AWS Japan Blog
Oracle Database@AWS 移行に向けてアプリケーションの SQL*Net レイテンシーを把握する
- Link: https://aws.amazon.com/jp/blogs/news/characterizing-sqlnet-latency-in-your-application-for-oracle-databaseaws-migrations/
- Published: 2026-08-19 06:54:07
- Fetched: 2026-08-19 07:18:09
株式会社セガ、グローバル展開タイトル『ソニックランブル パーティ』を少人数チームで支える Amazon EKS Auto Mode × Agones 活用事例
- Link: https://aws.amazon.com/jp/blogs/news/sonic-rumble-party-eks-automode-agones/
- Published: 2026-08-19 11:45:10
- Fetched: 2026-08-19 12:41:41
株式会社セガ、グローバル展開タイトル『ソニックランブル パーティ』を少人数チームで支える Amazon DynamoDB / Amazon ElastiCache Serverless for Valkey 活用事例
- Link: https://aws.amazon.com/jp/blogs/news/sonic-rumble-party-dynamodb-elasticache/
- Published: 2026-08-19 11:46:26
- Fetched: 2026-08-19 12:41:41
鮮度の高いインサイトで迅速な意思決定を – talabat が AWS と Google Cloud で実現したニアリアルタイム分析
- Link: https://aws.amazon.com/jp/blogs/news/fresher-insights-faster-decisions-talabats-near-real-time-analytics-across-aws-and-google-cloud/
- Published: 2026-08-19 12:01:09
- Fetched: 2026-08-19 12:41:41
株式会社日新 × AWS:人とAIが協働する新しい物流「オプティマAI」
- Link: https://aws.amazon.com/jp/blogs/news/nissin-optimaai/
- Published: 2026-08-19 13:08:49
- Fetched: 2026-08-19 13:32:17
Security Hub Extended が 10 番目のカテゴリとしてサプライチェーンセキュリティを追加
- Link: https://aws.amazon.com/jp/blogs/news/security-hub-extended-adds-supply-chain-security-as-its-tenth-category/
- Published: 2026-08-19 14:31:52
- Fetched: 2026-08-19 15:36:08
AWS Certificate Manager の ACME サポートで証明書の発行と更新を自動化
- Link: https://aws.amazon.com/jp/blogs/news/automate-certificates-with-acme-support-in-aws-certificate-manager/
- Published: 2026-08-19 14:34:37
- Fetched: 2026-08-19 15:36:08
Agentic AI でつなぐモノ・サービスの改善サイクル 〜 蓄積する運用フェーズのデータを Amazon Quick で次の開発に活用する方法を学ぼう
- Link: https://aws.amazon.com/jp/blogs/news/smart-products-ai-sdlc-operation/
- Published: 2026-08-19 21:03:50
- Fetched: 2026-08-19 21:37:35
AWS Security Blog
Security Hub Extended adds Supply Chain Security as its tenth category
- Link: https://aws.amazon.com/blogs/security/security-hub-extended-adds-supply-chain-security-as-its-tenth-category/
- Published: 2026-08-19 02:04:28
- Fetched: 2026-08-19 02:22:05
Implement custom authentication for tools integration using request Lambda interceptor in AgentCore Gateway
- Link: https://aws.amazon.com/blogs/security/implement-custom-authentication-for-tools-integration-using-request-lambda-interceptor-in-agentcore-gateway/
- Published: 2026-08-19 05:46:26
- Fetched: 2026-08-19 06:19:11
AWS Security Bulletins
CVE-2026-75897 - Uncontrolled resource consumption in OpenSearch Dashboards capabilities route
- Link: https://aws.amazon.com/security/security-bulletins/rss/2026-082-aws/
- Published: 2026-08-19 03:26:06
- Fetched: 2026-08-19 03:31:38
Bulletin ID: 2026-082-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 08/18/2026 10:00 AM PDT
Description:
OpenSearch Dashboards is the open-source visualization and management UI for OpenSearch, and ships as part of Amazon OpenSearch Service. We identified CVE-2026-75897, an improper input validation in the capabilities route handler in OpenSearch Dashboards. The handler does not bound the size of the request payload, which might allow remote attackers to cause a denial of service via a crafted HTTP request.
Affected Products and Versions:
OpenSearch "Plugin Type" Plugin (open-source, self-managed):
- Affected: All versions from 1.3.0 through 3.7.0 inclusive, including all 2.x releases up to and including 2.19.6. The issue is inherited from upstream Kibana and is also present in Kibana 7.7.1 through 7.10.2.
- Fixed: 3.8.0
Amazon OpenSearch Service (AWS Managed):
- Affected: Engine versions OpenSearch 1.3, 2.11, 2.13, 2.15, 2.17, 2.19, 3.1, 3.3, and 3.5, and Elasticsearch-compatibility versions using Kibana 7.9 and 7.10.
- Fixed: A patched service software release is available for all affected versions. Apply the latest available service software update to your domain.
Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.
CVE-2026-75935 and CVE-2026-75936 - Issue with Amazon ion-java - Memory-amplification denial of service
- Link: https://aws.amazon.com/security/security-bulletins/rss/2026-083-aws/
- Published: 2026-08-19 04:44:37
- Fetched: 2026-08-19 05:17:59
Bulletin ID: 2026-083-AWS
Scope: AWS
Content Type: Important (requires attention)
Publication Date: 08/18/2026 12:30 PM PDT
Description:
ion-java is a Java library that implements the Amazon Ion data format specification. We identified CVE-2026-75935, memory-amplification denial of service via declared-length preallocation, and CVE-2026-75936, memory-amplification denial of service via highly compressed data expansion.
Affected versions: < 1.12.0
Please refer to the article below for the most up-to-date and complete information related to this AWS Security Bulletin.
AWS Architecture Blog
AI-powered clinical trial eligibility and safety using Amazon Bedrock AgentCore
- Link: https://aws.amazon.com/blogs/architecture/ai-agents-for-clinical-trial-screening/
- Published: 2026-08-19 22:11:51
- Fetched: 2026-08-19 22:39:56
How Clario technology detects PHI/PII in DICOM images using Amazon Bedrock
- Link: https://aws.amazon.com/blogs/architecture/how-clario-automates-phi-pii-detection-in-dicom-images-using-amazon-bedrock/
- Published: 2026-08-19 23:29:31
- Fetched: 2026-08-20 00:26:13
AWS Machine Learning Blog
How Axonius built secure multi-tenant AI agents on Bedrock AgentCore
- Link: https://aws.amazon.com/blogs/machine-learning/how-axonius-built-secure-multi-tenant-ai-agents-on-bedrock-agentcore/
- Published: 2026-08-19 01:27:07
- Fetched: 2026-08-19 02:22:07
Improve contract search accuracy with auto-generated filters in Amazon Bedrock
- Link: https://aws.amazon.com/blogs/machine-learning/improve-contract-search-accuracy-with-auto-generated-filters-in-amazon-bedrock/
- Published: 2026-08-19 02:02:52
- Fetched: 2026-08-19 02:22:07
How Jumio built a real-time feature store on AWS
- Link: https://aws.amazon.com/blogs/machine-learning/how-jumio-built-a-real-time-feature-store-on-aws/
- Published: 2026-08-19 02:05:48
- Fetched: 2026-08-19 02:22:07
Implement vector-prompt document classification using Amazon Bedrock
- Link: https://aws.amazon.com/blogs/machine-learning/implement-vector-prompt-document-classification-using-amazon-bedrock/
- Published: 2026-08-19 02:10:37
- Fetched: 2026-08-19 02:22:07
Customize Amazon Quick embedded chat into your application
- Link: https://aws.amazon.com/blogs/machine-learning/customize-amazon-quick-embedded-chat-into-your-application/
- Published: 2026-08-19 02:13:13
- Fetched: 2026-08-19 02:22:07
Amazon Bedrock AgentCore payments is now generally available: Enabling agents to transact safely and autonomously at scale
- Link: https://aws.amazon.com/blogs/machine-learning/amazon-bedrock-agentcore-payments-is-now-generally-available-enabling-agents-to-transact-safely-and-autonomously-at-scale/
- Published: 2026-08-19 03:56:14
- Fetched: 2026-08-19 04:23:42
AWS Compute Blog
Set up your AI coding agent to build with AWS Step Functions
- Link: https://aws.amazon.com/blogs/compute/set-up-your-ai-coding-agent-to-build-with-aws-step-functions/
- Published: 2026-08-19 20:41:31
- Fetched: 2026-08-19 21:37:37