GCP Releases
Google Cloud releases and Terraform Google provider. New features, breaking changes, security advisories and deprecations - each summarised in plain English and updated continuously.
Tracking 819 GCP releases · Updated
- Google Cloud Blog blogaisecuritygovernancepreviewarchitectgovernmentgcp-cloud-rungcp-cloud-functions ·
Google Cloud CISO Perspectives: AI Threat Defense for Boards
This article discusses the evolving role of AI threat defense, emphasizing its importance for boardroom security governance and business agility. It highlights how organizations can transition from manual, reactive security to an automated, AI-native capability. The piece is targeted at board members, CISOs, and business leaders needing to understand AI security strategies and governance frameworks. It introduces Google's AI Threat Defense (AITD) concept and outlines five key areas for inquiry regarding AI security.
announcement - Google Cloud Blog bloggovernancegcppreviewengineergovernmentgcp-cloud-sql ·
AlloyDB adds IAM group authentication for enterprise-scale access and AI agents
AlloyDB for PostgreSQL now supports IAM group authentication in preview, simplifying enterprise-scale database access control and enhancing security for AI agents. This feature allows administrators to manage database permissions via Google Groups, reducing the complexity of provisioning and auditing individual user accounts, and providing a unified security model with Cloud SQL. The capability is aimed at engineers and architects managing large-scale database deployments and increasingly complex AI agent interactions.
feature announcement - Google Cloud Blog blogaisecuritygcpengineerfinanceretaileducationgovernmentenergyautomotive ·
GCP Security Blog: Trends in Open Source Software Supply Chain Compromise
Google Threat Intelligence Group (GTIG) is tracking an increase in threat actors targeting open source software repositories for supply chain compromises, with significant campaigns observed in 2025 and early 2026. These attacks leverage compromised code repositories, dependencies, and developer tools, offering attackers efficiency and scale. The blog post provides mitigation and hardening recommendations based on GTIG's observations, highlighting the impact across various industries and countries, with a particular focus on how AI is likely to accelerate these threats.
announcement - Google Cloud release notes securitygcpgaarchitectgovernment ·
reCAPTCHA Agent Overview Dashboard Launched
A new Agent overview dashboard is now available on the Google Cloud Fraud Defense home page. This dashboard enables monitoring and analysis of automated agent traffic, distinguishing verified from suspected agents. It is now generally available and accessible through the Google Cloud console.
feature - Google Cloud Blog blogsecuritygcpgapreviewengineergovernment ·
Cloud KMS adds quantum-safe digital signatures and post-quantum key encapsulation
Google Cloud Key Management Service (Cloud KMS) now offers general availability for quantum-safe digital signatures (ML-DSA, SLH-DSA) and post-quantum key encapsulation (ML-KEM) to protect data integrity against future quantum computers. This update addresses the challenge of signing large data payloads efficiently and supports compliance with evolving regulatory mandates. The new capabilities are available now for all Cloud KMS users.
feature announcement - Google Cloud Blog blogaigcppreviewengineergovernmentgcp-cloud-run ·
Google Cloud adds AI cost controls: anomaly detection and spend caps
Google Cloud is introducing two new native features in the Billing console to help manage generative AI costs: early anomaly detection on AI services and spend caps on Budgets. These tools allow users to proactively identify unusual AI spending trends and enforce financial limits, mitigating the risk of unexpected cost spikes. The features are currently in Public Preview, with early anomaly detection supporting services like Gemini API and Cloud Run, and Spend Caps applying to specific projects and services.
feature announcement - Google Cloud Blog blogaisecuritygcpengineergovernment ·
Google Cloud Cyber Snapshot Report: Building Enterprise Resilience
Google Cloud's latest Defender's Advantage report emphasizes shifting from prevention to resilience, anticipating and containing breaches rather than solely focusing on blocking them. It highlights that human and systemic failures, alongside exploits and voice phishing, remain common entry points for attacks. The report advises hardening architectures, securing extended digital footprints, and fostering human readiness through immersive learning to manage crises effectively. This latest issue addresses the growing threat of AI-assisted exploit development.
announcement - Google Cloud Blog bloggcpengineergovernment ·
NOAA Selects Google Cloud for Supercomputing Infrastructure
NOAA has chosen Google Cloud as its primary provider for the Weather and Climate Operational Supercomputing System (WCOSS), marking a significant shift to a cloud-first infrastructure. This collaboration aims to enhance weather and climate modeling by leveraging Google Cloud's High-Performance Computing (HPC) capabilities, specifically H4D VMs, to improve the speed, scale, and reliability of weather predictions. This move enables NOAA meteorologists and researchers to adapt future modeling innovations more effectively and positions the United States to lead in global weather modeling.
announcement feature - Google Cloud Blog blogaiawsazuregcpgapreviewengineerfinanceretailmediagovernmentgcp-bigquerygcp-cloud-rungcp-gkegcp-cloud-storagegcp-vertex-ai ·
Google Cloud AI and AI Agent Updates: June Recap
Google Cloud has released several updates focusing on building, scaling, and securing AI, including a new Open Knowledge Format for LLMs and expanded agentic development capabilities. These advancements aim to help organizations run smarter, more secure applications and improve product discovery. The updates are now available, with new models and tools accessible to various customer segments.
feature announcement - Google Cloud release notes aigcppreviewengineergovernment ·
Google Cloud Fraud Defense: reCAPTCHA Preview
Google Cloud Fraud Defense is now in preview with Policy Engine, Universal keys, and challenge policies. Policy Engine enables custom rules for triggering CAPTCHA challenges based on various risk factors, and a new AI-resistant QR code challenge is included. This preview aims to enhance bot detection and fraud prevention for developers integrating reCAPTCHA.
feature - Google Cloud Blog blogsecuritygovernment ·
Google Threat Intelligence adopts unified threat actor naming system
Google Threat Intelligence Group (GTIG) is implementing a new, unified naming system for tracking threat actors, moving from historically separate schemas used by Mandiant and TAG. This cryptonym-based approach uses two-word combinations, with the second word categorizing actors by motivation or activity, aiming to provide defenders with better context and intuition for faster response. The system is being rolled out incrementally, with previous names remaining indexed and searchable on the GTI platform.
announcement - Google Cloud Blog blogaigcpengineergovernmentenergy ·
Google commits $40M to boost AI for scientific discovery in Genesis Mission
Google is committing $40 million in AI tokens and cloud credits to accelerate scientific research as part of the White House's Genesis Mission. This initiative provides Department of Energy National Laboratories with access to frontier AI tools like AlphaEvolve, AlphaFold 3, and Gemini for Government. The goal is to leverage AI to double the pace of American scientific discovery, with early results showing significant time savings and expanded research capabilities for scientists.
announcement feature - Google Cloud Blog bloggovernancegcpengineergovernmentgcp-bigquery ·
Google Cloud IAM Conditions for Fine-Grained Access Control
Google Cloud IAM now offers conditions to enforce the Principle of Least Privilege (PoLP) beyond resource or service binding limitations. These conditions, written in Common Expression Language (CEL), allow administrators to restrict broad IAM roles to specific operations, APIs, or even timeframes. This hardening of access management is particularly beneficial for service accounts managing resources and for controlling access to specific MCP servers, impacting engineers and architects responsible for security.
feature - Google Cloud Blog blogsecuritygcpgapreviewengineergovernment ·
CodeMender preview: AI-powered code vulnerability scanning and remediation
Google Cloud is releasing CodeMender, a managed code security agent, in preview. This tool uses AI to scan for and automatically remediate software vulnerabilities, aiming to reduce security risks and speed up remediation. It is designed for security teams and developers working with various programming languages and integrates with CI/CD workflows. Availability is currently in preview, with wider access planned.
feature announcement - Google Cloud Blog blogaigcppreviewengineerretailgovernmentgcp-bigquerygcp-cloud-rungcp-pubsub ·
Build AI Agents on GCP with Gemini Enterprise Agent Platform Demos
Google has released 13 hands-on demos for its Gemini Enterprise Agent Platform, showcasing how to build, scale, govern, and optimize AI agents. These demos utilize the code-first ADK and offer practical patterns for enterprise development, from basic agent creation to complex, long-running, and multi-agent pipelines. Developers can leverage these examples to integrate with services like BigQuery and Cloud Run, with features for security, governance, and optimization built-in.
feature announcement - Google Cloud Blog blogaigcpengineerfinanceretailgovernmentautomotive ·
Google recognized as leader in Conversational AI by Gartner
Google has been named a leader in the Gartner Magic Quadrant for Conversational AI Platforms for the second consecutive year, receiving top marks for vision and execution. This recognition highlights Google's advancements in AI research and enterprise infrastructure, particularly with Gemini Enterprise for Customer Experience. The platform enables organizations to build sophisticated AI agents that can reason, act, and integrate across enterprise systems for improved customer interactions. The announcement emphasizes the capabilities of CX Agent Studio and its foundation on Google Cloud's AI stack, designed for production-ready AI deployments.
announcement - Google Cloud Blog blogaiinfragcpengineergovernmentgcp-gkegcp-cloud-storage ·
GKE Blueprint for Enterprise AI Workload Security
Google Kubernetes Engine (GKE) now offers a blueprint to secure enterprise AI workloads by integrating controls across multiple Google Cloud services and GKE features. This blueprint addresses infrastructure, model, and application security layers, aiming to protect proprietary models and comply with regulations without hindering developer velocity. It is available for platform engineering teams and CISOs managing AI deployments on GKE.
announcement feature - Google Cloud Blog blogaisecuritygcpengineergovernmentgcp-gke ·
Google Cloud AI Threat Defense Combats AI-Driven Cyberattacks
Google Cloud introduces AI Threat Defense, a unified platform leveraging Gemini, Wiz, CodeMender, and Mandiant to counter AI-powered cyberattacks. This new framework aims to provide defenders with a speed and context advantage over attackers who are increasingly using AI for zero-day exploits and rapid multi-agent attacks. The platform assists organizations in preparing, scanning, prioritizing, remediating, and monitoring threats across their software development lifecycle. It's designed for security engineers and architects managing cloud environments.
feature announcement - Google Cloud Blog blogaisecuritygovernanceeolengineergovernmentenergy ·
Safely Integrate AI for Vulnerability Management
This blog post offers practical guidance from Mandiant Consulting on establishing operational guardrails for AI-assisted vulnerability management. It addresses the risks of deploying AI agents without mature integration processes, suggesting a hybrid approach combining AI with deterministic controls and human oversight. The recommendations are aimed at security teams looking to accelerate vulnerability discovery and remediation workflows while maintaining environmental integrity.
announcement - Google Cloud Blog blogsecuritygcpengineerfinanceretailmediagovernmentgcp-cloud-rungcp-cloud-storagegcp-compute-enginegcp-cloud-functions ·
Securing Serverless Applications Against Common Attacks on GCP
Mandiant highlights risks of publicly exposed serverless applications on Google Cloud, such as Cloud Run, lacking authentication. Exploiting vulnerabilities like LFI and command injection can lead to full cloud environment compromise, a growing concern with increased AI usage. This post details attack scenarios and provides hardening guidance, applicable to any public serverless deployment, emphasizing secure secrets management and least privilege principles for service accounts.
announcement security
About GCP release tracking on ReleaseBytes
Google Cloud publishes release notes per product — BigQuery, GKE, Cloud Run, Cloud SQL, Vertex AI and dozens more — which makes platform-wide awareness hard. ReleaseBytes aggregates the official GCP release notes and the Terraform Google provider changelog into a single feed, with a plain-English summary of each update and tags for breaking changes, deprecations and security fixes.
Frequently asked questions
How often are GCP release notes updated on ReleaseBytes? ›
Continuously. ReleaseBytes monitors the official GCP release channels around the clock and publishes a plain-English summary of each announcement shortly after it lands.
What kinds of GCP changes does ReleaseBytes track? ›
New features, enhancements, bug fixes, security advisories, breaking changes, deprecations and end-of-life announcements. Every item is tagged by type so you can filter to just the changes that need action.
How can I get alerts for new GCP releases? ›
Set up a free email or Slack alert filtered to GCP, subscribe to the weekly digest, or follow the RSS feed. Teams can also install the ReleaseBytes GitHub App or connect via MCP.
Where does the GCP release data come from? ›
From the official sources: Google Cloud releases and Terraform Google provider. Every item links back to the original vendor announcement.