AWS Releases
Amazon Web Services releases and Terraform AWS provider. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.
Tracking 681 AWS releases · Updated
- AWS What's New infraawsengineer ·
Amazon GameLift Streams adds secure terminal access for troubleshooting
Amazon GameLift Streams now offers Stream Session Admin Shell, a secure terminal connection for real-time troubleshooting of live stream sessions. This feature allows inspection of logs, processes, and application state without managing SSH keys or credentials, providing access equivalent to the application's environment. It's available at no extra cost in all GameLift Streams regions and supports Linux, Proton, and Windows Server runtimes.
feature - AWS What's New dataawsengineerhealthcareaws-sagemakeraws-iam ·
SageMaker Studio adds data lineage for IAM-based domains
Amazon SageMaker Unified Studio now supports OpenLineage compatible data lineage for IAM-based domains, integrating with Spark jobs from EMR, Glue, and SageMaker Visual ETL. This allows for interactive lineage graphing and programmatic management of data movement, enhancing visibility for data engineers and ML practitioners. The feature is now available in all SageMaker Unified Studio regions and complements existing support for IAM Identity Center-based domains.
feature - AWS What's New aisecurityawsaws-s3 ·
Amazon S3 Vectors expands to AWS GovCloud (US) Regions
Amazon S3 Vectors, a vector storage service for AI applications, is now available in AWS GovCloud (US-East) and AWS GovCloud (US-West). This expansion allows government agencies and their partners to leverage S3's elasticity and durability for AI workloads like RAG and semantic search. The service offers dedicated APIs for vector storage and querying without infrastructure provisioning.
feature announcement - AWS What's New aiawsengineeraws-rdsaws-bedrock ·
Amazon RDS for Oracle adds support for Oracle Database 26ai
Amazon RDS for Oracle now supports Oracle Database 26ai, integrating with Amazon Bedrock for foundation models and offering Oracle's Select AI for natural language queries. This enables in-database retrieval augmented generation (RAG) and AI Vector Search without external vector databases. The feature is available in all commercial and AWS GovCloud Regions for Enterprise Edition instances, with upgrade paths from 19c and 21c.
feature - AWS What's New securityawsazureengineer ·
AWS Security Hub integrates with Azure for cross-cloud security management
AWS Security Hub now monitors Microsoft Azure resources, unifying security posture management, risk analytics, and vulnerability assessment across both clouds. This addresses the challenge of managing separate security tools for multi-cloud environments, offering a single pane of glass for detection and response. The integration automatically discovers Azure resources, evaluates them against security standards, and presents findings in a unified view, with a 30-day free trial available. It is available in most AWS Regions and can be integrated independently with AWS Security Hub's CSPM and Amazon Inspector.
feature announcement - AWS What's New awsfinanceaws-redshift ·
Amazon Redshift RG instances now available in AWS GovCloud
Amazon Redshift RG instances, featuring AWS Graviton processors, are now available in the AWS GovCloud (US) Regions. These instances offer up to 2.4x faster data warehouse and data lake workloads at a lower cost, integrating Redshift's data lake query engine. They are available in two sizes and can be accessed by existing RA3 customers through upgrade options.
feature - AWS What's New securitygovernanceawsengineer ·
AWS VPC Encryption Controls support declarative policies
AWS has introduced declarative policies for VPC Encryption Controls, allowing users to centrally define and enforce encryption in transit across all VPCs in their environment. This simplifies management for security teams by enabling a single policy for all existing and future VPCs, providing central visibility and aiding compliance with standards like HIPAA and PCI. This feature is available in all regions supporting VPC Encryption Controls at no additional charge for AWS Organizations users.
feature - AWS What's New infraawsengineerhealthcare ·
Amazon EMR Serverless adds larger worker sizes
Amazon EMR Serverless now supports larger worker configurations, offering up to 32 vCPUs and 244 GB of memory. This enhancement allows for running more compute and memory-intensive workloads, potentially improving runtime performance and reducing costs for Spark and Hive jobs. The feature is available in all AWS Regions where EMR Serverless is supported, and is recommended for shuffle-heavy, data-skewed, or in-memory caching workloads.
feature - AWS What's New infraawsengineeraws-ec2 ·
Amazon EC2 C8i instances launch in Europe (Frankfurt)
Amazon EC2 C8i instances, powered by custom Intel Xeon processors and Nitro cards, are now available in the AWS Europe (Frankfurt) region. These instances offer significant performance improvements in network throughput and packet processing compared to previous generations. They are targeted at security and network virtual appliances and are available via Savings Plans and On-Demand purchasing.
feature - AWS What's New securityawsengineeraws-iam ·
AWS Security Hub adds impact analysis for exposure findings
AWS Security Hub now includes impact analysis for exposure findings, enabling security teams to understand the potential reach of an exploited vulnerability. This feature maps downstream resources and identifies privilege escalation paths using effective IAM permissions. The analysis is integrated into severity scoring and displayed in a new potential attack path graph and Impact Assessment tab, prioritizing exposures with greater downstream risk.
feature - AWS What's New aiawsgaengineeraws-sagemakeraws-bedrockaws-iam ·
SageMaker Studio integrates with Hugging Face for one-click model deployment
Amazon SageMaker Studio now offers direct integration with Hugging Face, enabling users to deploy or customize models with a single click. This streamlines the process from model discovery to a fully configured Studio environment, reducing prior manual steps like console navigation, permission setup, and quota requests. New customers get a Studio environment with pre-configured permissions, while verified customers receive default GPU access without manual quota increases. The feature is available in all supported AWS Commercial Regions.
feature - AWS What's New infraawsengineer ·
Amazon Cognito enables self-service API rate limit adjustments
Amazon Cognito now offers a self-service mechanism for adjusting provisioned API rate limits on demand via the console or a new API. This allows developers to quickly adapt rate limits to fluctuating traffic, eliminating the previous manual review process via Service Quotas. These self-service limits are available for adjustable API categories in all Cognito-supported AWS Regions and take effect immediately.
feature - AWS What's New aiawsengineeraws-eksaws-sagemaker ·
SageMaker HyperPod enhances LLM inference with Disaggregated Prefill and Decode
Amazon SageMaker HyperPod now supports Disaggregated Prefill and Decode (DPD), an optimization that separates LLM inference prefill and decode phases onto dedicated GPU pools to improve per-token latency and throughput for production LLM workloads. This allows for independent scaling of compute and memory bandwidth resources, benefiting chat assistants, agentic pipelines, and RAG applications. DPD is enabled via the InferenceEndpointConfig custom resource and is available for SageMaker HyperPod clusters using EKS on EFA-capable instance types in all available AWS regions.
feature - AWS What's New observabilityawspreviewengineeraws-eks ·
CloudWatch Application Signals Adds Automatic Service Event Capture
Amazon CloudWatch Application Signals now automatically captures exception, latency, function-level performance, and deployment events without code changes. This helps users quickly identify deployment-related errors and performance issues. The feature is available to applications with Application Signals enabled via ADOT SDKs or the EKS add-on, and supports Java, Python, and JavaScript in all commercial AWS Regions.
feature - AWS What's New infraawsengineerautomotiveaws-ec2 ·
Amazon EVS adds support for VMware Cloud Foundation 9.0 and 9.1
Amazon Elastic VMware Service (EVS) now supports VMware Cloud Foundation (VCF) 9.0 and 9.1, allowing users to run the latest VCF versions within their Amazon VPC on EC2 bare-metal instances. This update gives users complete control over their VCF environments, enabling them to use familiar tools and processes. A new GitHub repository with IaC examples is also launched to aid adoption, and this feature is available in all EVS-supported regions.
feature announcement - AWS What's New securityawssnowflakeengineer ·
AWS Secrets Manager adds managed external secrets for Paddle and GitLab
AWS Secrets Manager now supports managed external secrets for Paddle API Keys and GitLab Access Tokens, enabling automatic rotation of third-party credentials directly within Secrets Manager. This enhancement simplifies credential management and enhances security by allowing seamless key rotation for supported services. These new integrations join existing ones, offering centralized management for a growing list of third-party software vended secrets across all supported AWS Regions.
feature - AWS What's New observabilityawspreviewengineer ·
CloudWatch Application Signals adds dynamic instrumentation
Amazon CloudWatch Application Signals now supports dynamic instrumentation, allowing developers to capture runtime state from live applications without restarts. This feature helps debug difficult-to-reproduce production issues by inspecting variable values and method arguments at specific code locations. It requires the AWS Distro for OpenTelemetry (ADOT) SDKs and is available in all commercial AWS regions for Java, Python, and JavaScript/TypeScript applications.
feature - AWS What's New securityawsengineer ·
AWS Certificate Manager supports ACME for public certificates
AWS Certificate Manager (ACM) now offers a managed ACME server endpoint for provisioning public TLS certificates with a 45-day validity. This feature automates certificate issuance and renewal using standard ACMEv2 clients, addressing the increasing difficulty of manual certificate management due to shorter mandated lifetimes. It allows PKI administrators to enforce governance and delegate certificate requests, with all activity logged in ACM and CloudTrail.
feature - AWS What's New aiawsgaengineeraws-eksaws-sagemaker ·
SageMaker HyperPod adds AMI versioning and auto-patching
Amazon SageMaker HyperPod now provides visibility into AMI versions and automatically applies security patches to clusters without disrupting workloads. This enhances security and consistency by enabling administrators to detect drift, roll back to previous versions, and apply patches non-disruptively. These features are available for HyperPod clusters orchestrated by Amazon EKS in all supported AWS Regions.
feature patch - AWS What's New aiinfraawsengineeraws-sagemakeraws-iam ·
SageMaker Unified Studio now supports Terraform provisioning
Amazon SageMaker Unified Studio now supports Terraform for provisioning, allowing platform teams to integrate SageMaker domains into existing infrastructure-as-code pipelines. This enhancement ensures consistency across environments and simplifies the deployment of managed workspaces with built-in governance and access control. The feature is available in all AWS Regions where SageMaker Unified Studio is offered and requires the Terraform AWS Cloud Control Provider.
feature
About AWS release tracking on ReleaseBytes
AWS ships hundreds of service updates a month across EC2, Lambda, RDS, S3, EKS and the rest of the catalogue — far more than anyone can follow by reading the official What's New feed. ReleaseBytes ingests announcements from AWS's official release channels and the Terraform AWS provider changelog, summarises each one in plain English, and tags anything that is a breaking change, security advisory or deprecation so you can see at a glance whether it affects your workloads.
Frequently asked questions
How often are AWS release notes updated on ReleaseBytes? ›
Continuously. ReleaseBytes monitors the official AWS release channels around the clock and publishes a plain-English summary of each announcement shortly after it lands.
What kinds of AWS changes does ReleaseBytes track? ›
New features, enhancements, bug fixes, security advisories, breaking changes, deprecations and end-of-life announcements. Every item is tagged by type so you can filter to just the changes that need action.
How can I get alerts for new AWS releases? ›
Set up a free email or Slack alert filtered to AWS, subscribe to the weekly digest, or follow the RSS feed. Teams can also install the ReleaseBytes GitHub App or connect via MCP.
Where does the AWS release data come from? ›
From the official sources: Amazon Web Services releases and Terraform AWS provider. Every item links back to the original vendor announcement.