AWS IAM Identity Center achieves FedRAMP Class C Certification

Today’s signal AWS What’s New recently reported AWS IAM Identity Center achieves FedRAMP Class C Certification. Published context: July 14, 2026. AWS IAM Identity Center is now in scope for FedRAMP Class C in the US East (Ohio), US East (N. Virginia), US West (N. California), and US West (Oregon) Regions. You can now use IAM Identity Center to enable workforce access to AWS accounts and applications that are subject to FedRAMP Class C compliance. The Federal Risk and Authorization Management Program ( ...

July 19, 2026 · 3 min · David Gomez

Amazon Aurora DSQL is now in scope for FedRAMP Moderate

Today’s signal AWS What’s New recently reported Amazon Aurora DSQL is now in scope for FedRAMP Moderate. Published context: July 16, 2026. Amazon Aurora DSQL is now in scope for FedRAMP Moderate in the US East (Ohio), US East (N. Virginia), and US West (Oregon) Regions. You can now use Aurora DSQL to build applications and run workloads that are subject to FedRAMP Moderate compliance requirements. The Federal Risk and Authorization Management Program (FedRAMP) is a US government-wide program th ...

July 19, 2026 · 3 min · David Gomez

GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft

Today’s signal The Hacker News recently reported GoldenEyeDog Subgroup Linked to DigiCert Breach and Code-Signing Certificate Theft. Published context: July 17, 2026. Cybersecurity researchers have attributed the April 2026 DigiCert security incident to a threat activity cluster dubbed CylindricalCanine. Expel, which shared technical details of the event, described the threat actor as a sub-group of GoldenEyeDog (aka APT-Q-27, Dragon Breath, and Miuuti Group), a Chinese cybercrime group known for its targeting of the gamb ...

July 18, 2026 · 3 min · David Gomez

Amazon S3 Event Notifications now include system-generated tags

Today’s signal AWS What’s New recently reported Amazon S3 Event Notifications now include system-generated tags. Published context: July 16, 2026. Amazon S3 Event Notifications now include system-generated tags in events delivered to all destinations including Amazon EventBridge, Amazon SQS, Amazon SNS, and AWS Lambda. System-generated tags are metadata labels attached to your bucket by AWS services. You can use these tags to filter events from thousands of buckets with a single EventBridge rule, inste ...

July 18, 2026 · 3 min · David Gomez

CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV

Today’s signal The Hacker News recently reported CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV. Published context: July 17, 2026. The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a newly patched security flaw impacting Microsoft SharePoint Server to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by July 19, 2026. The vulnerability in question is CVE-2026-58644 (CVSS scor ...

July 17, 2026 · 3 min · David Gomez

Amazon EC2 now surfaces the public SSM parameters associated with public AMIs

Today’s signal AWS What’s New recently reported Amazon EC2 now surfaces the public SSM parameters associated with public AMIs. Published context: July 16, 2026. Amazon EC2 now surfaces the AWS Systems Manager (SSM) Parameter Store parameters associated with public AMIs directly in the AMI metadata. When you describe a public AMI, the response includes the associated public SSM parameter, making it easy to discover and reference in your configurations. Previously, finding the SSM parameter associated with a public AM ...

July 17, 2026 · 3 min · David Gomez

Zoom Patches Critical Windows Flaw That Could Enable Account Takeover

Today’s signal The Hacker News recently reported Zoom Patches Critical Windows Flaw That Could Enable Account Takeover. Published context: July 16, 2026. Zoom has released security updates for a critical security flaw impacting Zoom Workplace for Windows that could facilitate account takeover. The vulnerability, tracked as CVE-2026-53412 (CVSS score: 9.8), affects Zoom Desktop Client for Windows, Zoom VDI Client for Windows, and Zoom Meeting SDK for Windows. “Improper Input Validation in Zoom Desktop Client f ...

July 16, 2026 · 3 min · David Gomez

Amazon EC2 M8in, M8idn, M8ib, M8idb instances are now available in additional regions

Today’s signal AWS What’s New recently reported Amazon EC2 M8in, M8idn, M8ib, M8idb instances are now available in additional regions. Published context: July 14, 2026. Starting today, Amazon Elastic Compute Cloud (Amazon EC2) M8in, M8idn network optimized, and M8ib, M8idb EBS optimized instances are available in the AWS US East (Ohio), Europe (Ireland), and Asia Pacific (Tokyo) regions. The new instances are powered by custom sixth generation Intel Xeon Scalable processors available only on AWS and deliver up to 43% higher ...

July 16, 2026 · 3 min · David Gomez

Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack

Today’s signal The Hacker News recently reported Microsoft Patches Record 622 Flaws, Including Two Zero-Days Under Active Attack. Published context: July 14, 2026. Microsoft shipped its largest Patch Tuesday on record today, and two of the fixes close holes that attackers are already exploiting. The release covers 622 of Microsoft’s own CVEs by its Security Update Guide count, more than triple June’s previous high of around 200. Those two live bugs are the ones to grab first. Microsoft credits incident responders for b ...

July 15, 2026 · 3 min · David Gomez

Introducing Amazon GuardDuty AI Protection for AWS AI workloads

Today’s signal AWS What’s New recently reported Introducing Amazon GuardDuty AI Protection for AWS AI workloads. Published context: July 14, 2026. Amazon GuardDuty now offers AI Protection, expanding threat detection to AWS AI services including Amazon Bedrock and Amazon SageMaker. As organizations rapidly adopt AI, security teams may lack visibility into threats specifically targeting AI workloads, such as anomalous model invocations, cost harvesting attacks, and prompt injection attempts. GuardDuty A The reason this matters is simple: buyers are paying attention to speed, operational resilience, and credible technical execution. A trending story can create awareness, but the business question is what a team should do with that attention. ...

July 15, 2026 · 3 min · David Gomez

Apple says former employee exploited ‘rare’ bug to download confidential files after leaving...

Today’s signal TechCrunch recently reported Apple says former employee exploited ‘rare’ bug to download confidential files after leaving for OpenAI. Published context: July 13, 2026. Apple would not comment on the “security breach,” which allegedly allowed a former employee to download sensitive files from Apple’s network long after he departed the company for rival OpenAI. The reason this matters is simple: buyers are paying attention to speed, operational resilience, and credible technical execution. A trending story can create awareness, but the business question is what a team should do with that attention. ...

July 14, 2026 · 3 min · David Gomez

OpenAI GPT-5.6 Sol, Terra, and Luna now generally available on Amazon Bedrock

Today’s signal AWS What’s New recently reported OpenAI GPT-5.6 Sol, Terra, and Luna now generally available on Amazon Bedrock. Published context: July 13, 2026. GPT-5.6 Sol, Terra, and Luna are now generally available on Amazon Bedrock, bringing the smartest family of models from OpenAI yet to Bedrock’s next-generation inference engine built for high-performance, security and reliability. GPT-5.6 sets a new standard for intelligence and efficiency, allowing you to solve harder problems in less time and with more int ...

July 14, 2026 · 3 min · David Gomez