GCP Releases
Google Cloud releases and Terraform Google provider. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.
Tracking 819 GCP releases · Updated
- Google Cloud release notes securitygcpengineer ·
Cloud NGFW: WildFire feature temporarily removed due to outage risk
Cloud NGFW is temporarily removing the WildFire feature. Enabling WildFire in an existing firewall endpoint risks a temporary data plane outage, affecting existing traffic. This removal impacts users attempting to enable WildFire on established firewall endpoints.
breaking - Google Cloud Blog blogaisecuritygcpengineergovernment ·
Google Cloud Cyber Snapshot Report: Building Enterprise Resilience
Google Cloud's latest Defender's Advantage report emphasizes shifting from prevention to resilience, anticipating and containing breaches rather than solely focusing on blocking them. It highlights that human and systemic failures, alongside exploits and voice phishing, remain common entry points for attacks. The report advises hardening architectures, securing extended digital footprints, and fostering human readiness through immersive learning to manage crises effectively. This latest issue addresses the growing threat of AI-assisted exploit development.
announcement - Google Cloud release notes securitygcpengineer ·
Google SecOps SOAR 6.3.95 Release
Google SecOps SOAR has begun rolling out release 6.3.95, starting with a specific set of regions. This update primarily focuses on addressing internal and customer-reported bugs. Users in the designated regions can expect these fixes to improve stability and reliability.
announcement - Google Cloud release notes securitygcppreviewengineer ·
Google SecOps Enhances Investigation and Case Management (Preview)
Google SecOps has launched a public preview of a revamped Investigation Management experience, designed to handle higher investigation volumes and support new investigation types like retrohunt and threat hunting. This update allows users to track UDM events and detections alongside alerts within cases, offering customizable views and integrated search workflows for improved navigation. The preview is currently limited to single-SIEM deployments and requires manual migration of existing configurations.
feature - Google Cloud release notes securitygcpengineer ·
Google SecOps SOAR Release 6.3.94 Available
Google SecOps SOAR has released version 6.3.94, now available globally. This update is primarily an announcement of the new version's availability, impacting users who leverage the SOAR platform for security operations.
announcement - Google Cloud release notes securitygcpgaarchitect ·
Cloud Hub Security & Compliance page GA
The Security & Compliance page within Cloud Hub is now generally available. This feature provides a centralized view for managing security and compliance posture across Google Cloud resources. It is now production-ready for all users of Cloud Hub.
feature - Google Cloud release notes securitygcpgaarchitect ·
Security Command Center insights now in Cloud Hub
Key insights from Security Command Center are now accessible via the Security & compliance page within Cloud Hub. This new integration aims to provide users with a consolidated view of their security posture. The feature is now generally available to all users.
announcement - Google Cloud Blog blogsecuritygovernment ·
Google Threat Intelligence adopts unified threat actor naming system
Google Threat Intelligence Group (GTIG) is implementing a new, unified naming system for tracking threat actors, moving from historically separate schemas used by Mandiant and TAG. This cryptonym-based approach uses two-word combinations, with the second word categorizing actors by motivation or activity, aiming to provide defenders with better context and intuition for faster response. The system is being rolled out incrementally, with previous names remaining indexed and searchable on the GTI platform.
announcement - Google Cloud release notes securityazuregcpengineer ·
Google SecOps Marketplace Adds Features and Updates Integrations
Google SecOps Marketplace Version 14.0 introduces a new 'Get Blue Agent Analysis' action and updates several existing connectors. Version 5.0 of Azure Monitor updates integration documentation, while QRadar Version 69.0 enhances timestamp filtering. Jira Version 60.0 adds new filtering options, and Google Chronicle Version 90.0 improves detection handling. These updates benefit security operations teams and engineers managing integrations with these platforms.
feature patch - Google Cloud release notes securityinfragcpsecurity-advisoryengineer ·
Container Optimized OS Updates Address Security Vulnerabilities and Bugs
Several updates have been released for Container Optimized OS (COS) addressing multiple security vulnerabilities across glib, Python, wget, and the Linux kernel. These updates also include fixes for a bug in the XFS file system and upgraded versions of Docker and containerd. The changes are available for various COS versions and are relevant to users running containerized workloads on Google Cloud.
security patch - Google Cloud release notes securitygcpsecurity-advisoryengineergcp-looker ·
Looker Security Advisory: Cross-Site Scripting Vulnerability
A critical Cross-Site Scripting (XSS) vulnerability in Looker could allow an attacker to execute arbitrary scripts by tricking an administrator into opening a malicious URL. This affects both Looker-hosted and self-hosted instances. Looker-hosted instances are already mitigated, while self-hosted instances require an urgent update to patched versions.
security - Google Cloud release notes securitygcpengineergcp-cloud-sql ·
Cloud SQL for PostgreSQL: Secret Manager Auth for Data API
Cloud SQL for PostgreSQL now supports authenticating with Secret Manager for Data API executeSql calls. This allows storing database passwords securely in regional secrets instead of direct transmission. This feature benefits engineers and architects managing database credentials, enabling more secure access to Cloud SQL instances via its Data API.
feature - Google Cloud Blog blogsecuritygcpgapreviewengineergovernment ·
CodeMender preview: AI-powered code vulnerability scanning and remediation
Google Cloud is releasing CodeMender, a managed code security agent, in preview. This tool uses AI to scan for and automatically remediate software vulnerabilities, aiming to reduce security risks and speed up remediation. It is designed for security teams and developers working with various programming languages and integrates with CI/CD workflows. Availability is currently in preview, with wider access planned.
feature announcement - Google Cloud release notes securitygcpengineergcp-cloud-sql ·
Cloud SQL for MySQL: Secret Manager Authentication for Data API
Cloud SQL for MySQL now supports authentication using Secret Manager for the Data API's executeSql method. This allows storing database credentials securely in Secret Manager, enhancing security for programmatic database access. This feature is available for users executing SQL statements via the Data API, with documentation available for further details.
feature - Google Cloud release notes securitygcppreviewengineer ·
Binary Authorization adds post-quantum cryptography support
Binary Authorization now supports keys using post-quantum cryptography (PQC) algorithms like ML-DSA-65. This enhancement provides long-term security against future quantum computer threats. Users can now generate PQC key pairs and create attestors, with detailed instructions available.
feature - Google Cloud release notes aisecuritygcpengineer ·
Sensitive Data Protection: SWITZERLAND_PASSPORT infoType now in all regions
The SWITZERLAND_PASSPORT infoType detector for Sensitive Data Protection is now available globally. This enhances the tool's capability to identify sensitive Swiss passport information across all supported regions. Users previously limited by regional availability can now leverage this detector universally for data scanning and protection efforts.
feature - Google Cloud release notes securitygcpdeprecationengineergcp-compute-engine ·
Compute Engine deprecates customer-supplied encryption keys
Google Compute Engine is deprecating the use of customer-supplied encryption keys (CSEKs) for disks, snapshots, images, and machine images. This change will be effective on July 20, 2027, impacting users who rely on CSEKs for encryption. Alternatives and further details are available in the official documentation.
deprecation - Google Cloud release notes securitygcppreviewengineer ·
Cloud NGFW integrates WildFire for advanced malware protection
Google Cloud NGFW now integrates with the WildFire service to provide advanced protection against unknown malware and file-based threats using sandboxing and machine learning. This feature is intended for network security engineers managing workloads on GCP. It is available in the Cloud Firewall Enterprise tier and is currently in Preview.
feature - Google Cloud release notes securitygcpdeprecationengineer ·
Google SecOps SIEM deprecates legacy APIs
Google Security Operations is deprecating its legacy SIEM APIs, including the Backstory API and Ingestion API, in favor of the modern Chronicle API. This change affects custom scripts, integrations, SOAR connectors, or ingestion feeds that rely on these legacy endpoints. The deprecation will fully take effect with the complete shutdown of legacy APIs for all existing instances on July 20, 2027.
deprecation - Google Cloud release notes securitygcpdeprecationengineer ·
Google SecOps deprecates legacy SIEM APIs
Google Security Operations is deprecating its legacy SIEM APIs, including the Backstory and Ingestion APIs, in favor of the modern Chronicle API. This change impacts custom scripts, integrations, and ingestion feeds that use these legacy endpoints. Full deprecation is scheduled for July 20, 2027, with new instances no longer supporting legacy calls from October 26, 2026.
deprecation
About GCP release tracking on ReleaseBytes
Google Cloud publishes release notes per product — BigQuery, GKE, Cloud Run, Cloud SQL, Vertex AI and dozens more — which makes platform-wide awareness hard. ReleaseBytes aggregates the official GCP release notes and the Terraform Google provider changelog into a single feed, with a plain-English summary of each update and tags for breaking changes, deprecations and security fixes.
Frequently asked questions
How often are GCP release notes updated on ReleaseBytes? ›
Continuously. ReleaseBytes monitors the official GCP release channels around the clock and publishes a plain-English summary of each announcement shortly after it lands.
What kinds of GCP changes does ReleaseBytes track? ›
New features, enhancements, bug fixes, security advisories, breaking changes, deprecations and end-of-life announcements. Every item is tagged by type so you can filter to just the changes that need action.
How can I get alerts for new GCP releases? ›
Set up a free email or Slack alert filtered to GCP, subscribe to the weekly digest, or follow the RSS feed. Teams can also install the ReleaseBytes GitHub App or connect via MCP.
Where does the GCP release data come from? ›
From the official sources: Google Cloud releases and Terraform Google provider. Every item links back to the original vendor announcement.