All Tags

    Security Hub

    9 items across 2 sections

    Weekly News6

    Week 1 - Jan 1-5, 2026

    AWS announces SSE-C will be disabled by default on new general-purpose S3 buckets starting April 2026, closing the Codefinger ransomware vector. Security Hub and Security Agent updates from re:Invent 2025 keep rolling out.

    2026-01-01 - 2026-01-05

    Week 9 - Feb 24 - Mar 2, 2026

    Security Hub Extended Plan reaches GA with 14+ partners on day one, the launch most enterprises have been waiting for. LexisNexis loses 2 GB via a misconfigured AWS environment. Three AWS-LC crypto library CVEs land in one drop. VPC Encryption Controls move from preview to paid.

    2026-02-24 - 2026-03-02

    Week 11 - Mar 10-15, 2026

    Security Hub Extended officially expands to AWS, Azure, GCP, OCI, and Kubernetes, the long-anticipated cross-cloud play. European Sovereign Cloud completes SOC 2 Type 2 and BSI C5 audits. IAM Roles Anywhere ships post-quantum signing via ML-DSA. Inspector Classic gets a May 2026 EOL date.

    2026-03-10 - 2026-03-15

    Week 21 - May 18-24, 2026

    Security Hub learns to find identity risk that no one is using: unused IAM permissions, roles, and credentials, measured against 90 days of real activity. The Extended plan grows to 21 partners across 9 categories. Secrets Manager Agent picks up pre-fetching and cross-account role assumption, and Amazon Inspector Classic reaches end of support.

    2026-05-18 - 2026-05-24

    Week 28 - July 6-12, 2026

    Sygnia documents a lone actor compromising a global enterprise's AWS estate in under 72 hours with AI-assisted workflows. Wiz finds the same symlink trust flaw in six AI coding assistants. On defense: Security Hub gains internet-facing network scanning and AWS Config adds 191 managed rules.

    2026-07-06 - 2026-07-12

    Week 29 - July 13-19, 2026

    GuardDuty extends threat detection to Bedrock and SageMaker workloads, Security Hub goes multicloud with Azure support and an AI asset inventory, and Cognito removes the last big migration blocker by importing password hashes. Seven AWS bulletins land in four days, including a prompt-and-response leak in AgentCore telemetry.

    2026-07-13 - 2026-07-19
    Best Practices3

    Need Help with AWS Security?

    Our AWS security experts can help you implement best practices across all these topics.

    Contact Us