CISA Warns Critical Lantronix EDS5000 Flaw Is Being Actively Exploited

Today’s signal The Hacker News recently reported CISA Warns Critical Lantronix EDS5000 Flaw Is Being Actively Exploited. Published context: June 24, 2026. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday warned of active exploitation of a critical security flaw impacting Lantronix EDS5000 Series devices, urging Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by June 26, 2026. The vulnerability in question is CVE-2025-67038 (CVSS score: 9.8), a code injection flaw ...

June 26, 2026 · 3 min · David Gomez

Amazon Bedrock AgentCore Memory now supports cross-account access

Today’s signal AWS What’s New recently reported Amazon Bedrock AgentCore Memory now supports cross-account access. Published context: June 23, 2026. Amazon Bedrock AgentCore Memory now enables cross-account access, allowing you to build multi-account architectures where memory resources and consuming agents span multiple AWS accounts. You can grant principals in one account permission to call memory data plane APIs against resources in another account using resource-based policies, and configure memory d The reason this matters is simple: buyers are paying attention to speed, operational resilience, and credible technical execution. A trending story can create awareness, but the business question is what a team should do with that attention. ...

June 26, 2026 · 2 min · David Gomez

Kiro achieves FedRAMP High and DoD IL-4/5 authorization in AWS GovCloud (US)

Today’s signal AWS What’s New recently reported Kiro achieves FedRAMP High and DoD IL-4/5 authorization in AWS GovCloud (US). Published context: June 25, 2026. Kiro is now FedRAMP High and Department of Defense Cloud Computing Security Requirements Guide (DoD CC SRG) Impact Level (IL) 4 and 5 authorized in the AWS GovCloud (US) Regions. Federal agencies, public sector organizations, and other enterprises with FedRAMP High and DoD CC SRG IL-4/5 compliance requirements can now use Kiro as their agentic engineering pa ...

June 26, 2026 · 2 min · David Gomez

OpenAI GPT, OpenAI GPT OSS, and NVIDIA Nemotron models on Amazon Bedrock receive FedRAMP Hig...

Today’s signal AWS What’s New recently reported OpenAI GPT, OpenAI GPT OSS, and NVIDIA Nemotron models on Amazon Bedrock receive FedRAMP High and DoD IL-4/5 approval in AWS GovCloud (US). Published context: June 25, 2026. OpenAI GPT, OpenAI GPT OSS, and NVIDIA Nemotron models are now FedRAMP High and Department of Defense Cloud Computing Security Requirements Guide (DoD CC SRG) Impact Level (IL) 4 and 5 approved within Amazon Bedrock in the AWS GovCloud (US) Regions. Federal agencies, public sector organizations, and other enterprises with FedRAMP High and DoD CC SRG IL-4/5 c ...

June 26, 2026 · 2 min · David Gomez

Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access

Today’s signal The Hacker News recently reported Cisco Catalyst SD-WAN Zero-Day CVE-2026-20245 Exploited to Gain Root Access. Published context: June 25, 2026. An unknown threat actor exploited a recently disclosed high-severity security flaw impacting Cisco Catalyst SD-WAN as a zero-day at least two months before it was publicly disclosed, according to new findings from Google-owned Mandiant. The vulnerability, tracked as CVE-2026-20245 (CVSS score: 7.8), allows an authenticated, local attacker to execute arbitrar ...

June 25, 2026 · 3 min · David Gomez

Amazon GuardDuty AI-powered investigations accelerate threat response (Preview)

Today’s signal AWS What’s New recently reported Amazon GuardDuty AI-powered investigations accelerate threat response (Preview). Published context: June 23, 2026. AWS announces the preview of AI-powered investigations in Amazon GuardDuty, a new capability that automatically analyzes GuardDuty findings and accounts to help you quickly distinguish true threats from benign findings. This feature addresses the time-intensive manual investigation process that contributes to alert fatigue and slows incident response for sec The reason this matters is simple: buyers are paying attention to speed, operational resilience, and credible technical execution. A trending story can create awareness, but the business question is what a team should do with that attention. ...

June 25, 2026 · 2 min · David Gomez

Amazon EC2 announces AMI Watermarks for improved AMI governance

Today’s signal AWS What’s New recently reported Amazon EC2 announces AMI Watermarks for improved AMI governance. Published context: June 24, 2026. Amazon EC2 introduces AMI watermarks, letting you embed custom identifiers in your private AMIs. Once applied, a watermark automatically carries forward to every AMI derived from the original, whether you copy it across regions or create a new AMI from a running instance. Watermarks also remain visible when you share an AMI with other accounts. This helps yo ...

June 25, 2026 · 2 min · David Gomez

AWS IoT Device SDK for Swift is now generally available

Today’s signal AWS What’s New recently reported AWS IoT Device SDK for Swift is now generally available. Published context: June 24, 2026. The AWS IoT Device SDK for Swift is now generally available, enabling Swift developers to build secure, scalable IoT applications natively on Apple platforms including macOS, iOS, and tvOS, as well as Linux. This SDK addresses the previous lack of native Swift support for AWS IoT services, providing stable, production-ready APIs specifically designed for tea ...

June 25, 2026 · 2 min · David Gomez

Cisco Unified CM Flaw Exploited After PoC Reveals File-Write Path to Root

Today’s signal The Hacker News recently reported Cisco Unified CM Flaw Exploited After PoC Reveals File-Write Path to Root. Published context: June 24, 2026. Threat actors have begun to exploit a recently disclosed critical security flaw impacting Cisco Unified Communications Manager (Unified CM) and Unified Communications Manager Session Management Edition (Unified CM SME). The vulnerability, tracked as CVE-2026-20230 (CVSS score: 8.6), is a case of improper input validation for specific HTTP requests that could ...

June 24, 2026 · 3 min · David Gomez

Amazon CloudWatch Logs supports managed syslog ingestion

Today’s signal AWS What’s New recently reported Amazon CloudWatch Logs supports managed syslog ingestion. Published context: June 23, 2026. Amazon CloudWatch Logs supports managed syslog ingestion, enabling customers to send syslog messages from firewalls, routers, switches, and Linux servers directly into CloudWatch Logs. With today’s launch, customers can configure their network devices and servers to send syslog messages over TCP, TCP+TLS, or UDP to a VPC endpoint in their account - without i ...

June 24, 2026 · 2 min · David Gomez

Amazon CloudWatch now supports tags on dashboards

Today’s signal AWS What’s New recently reported Amazon CloudWatch now supports tags on dashboards. Published context: June 24, 2026. A mazon CloudWatch now supports tagging for CloudWatch dashboards, enabling you to organize, categorize, and control access to your dashboards using tags. Tags are key-value pairs that help you identify and manage AWS resources across your environment. With this launch, the PutDashboard API now accepts an optional Tags parameter, allowing you to assign up to ...

June 24, 2026 · 2 min · David Gomez

GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns

Today’s signal The Hacker News recently reported GitHub Updates actions/checkout to Block Common Pwn Request Attack Patterns. Published context: June 23, 2026. GitHub is moving to strengthen software supply chain security by updating “actions/checkout” to block pwn request attacks that exploit the risky use of the “pull_request_target workflow” trigger to run malicious code with the workflow’s full privileges. Effective June 18, 2026, the latest version of “actions/checkout,” the official GitHub action for checking ...

June 24, 2026 · 2 min · David Gomez