惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

F
Fox-IT International blog
Recent Announcements
Recent Announcements
D
Docker
IT之家
IT之家
B
Blog
Jina AI
Jina AI
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
博客园 - 【当耐特】
Google DeepMind News
Google DeepMind News
F
Fortinet All Blogs
量子位
C
Check Point Blog
Microsoft Azure Blog
Microsoft Azure Blog
罗磊的独立博客
博客园 - 司徒正美
李成银的技术随笔
美团技术团队
Blog — PlanetScale
Blog — PlanetScale
雷峰网
雷峰网
The GitHub Blog
The GitHub Blog
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
J
Java Code Geeks
T
The Blog of Author Tim Ferriss
酷 壳 – CoolShell
酷 壳 – CoolShell
MongoDB | Blog
MongoDB | Blog
P
Proofpoint News Feed
L
LangChain Blog
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Y
Y Combinator Blog
大猫的无限游戏
大猫的无限游戏
有赞技术团队
有赞技术团队
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
V
Visual Studio Blog
T
Tailwind CSS Blog
H
Help Net Security
Engineering at Meta
Engineering at Meta
小众软件
小众软件
B
Blog RSS Feed
Stack Overflow Blog
Stack Overflow Blog
月光博客
月光博客
M
Microsoft Research Blog - Microsoft Research
宝玉的分享
宝玉的分享
人人都是产品经理
人人都是产品经理
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
GbyAI
GbyAI
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Last Week in AI
Last Week in AI
Martin Fowler
Martin Fowler
Stack Overflow Blog
Stack Overflow Blog

Recent Announcements

Amazon SageMaker expands domain management across domain types New agentic migration assessment capabilities now available with AWS Transform Amazon SageMaker adds business metadata and governance in IAM-based domains AWS Security Agent adds verification scripts for pentest findings Amazon WorkSpaces Personal now supports WorkSpace Migration for Linux WorkSpaces Amazon Keyspaces (for Apache Cassandra) expands to Asia Pacific (Malaysia) and Asia Pacific (Thailand) Regions AWS Clean Rooms now supports mutable payment configurations for collaborations AWS Secrets Manager adds managed external secrets support for Datadog vended keys and Snowflake Programmatic Access Tokens Amazon CloudWatch Logs Insights adds new query commands and functions Amazon EC2 C7i-flex, M7i-flex & M7i instances now available in Asia Pacific (Hyderabad) region SageMaker Unified Studio automates Glue connector provisioning for cross-subnet job retries Amazon SageMaker AI now supports OpenAI-compatible APIs for inference endpoints Amazon Aurora MySQL 8.4 is now generally available Amazon RDS Custom now supports the latest GDR updates for Microsoft SQL Server Amazon Bedrock expands support for request-level usage attribution AWS Security Hub now uncovers identity risks from unused access Amazon DocumentDB (with MongoDB compatibility) Serverless is now available on DocumentDB 8.0 Security Hub Extended expands to 21 curated partner solutions across 9 categories Amazon SageMaker Unified Studio now supports data quality rule authoring and evaluation AWS announces ExtendDB, an open source DynamoDB-compatible adapter AWS Billing Conductor Improves Account Visibility with Billing Transfer Inventory ECS supports native integration with Amazon EBS volumes in GovCloud Regions AWS Transform now modernizes networks during migrations Announcing the general availability of a new AWS Local Zone in Istanbul, Türkiye AWS Transfer Family web apps now support federated permissions with IAM Identity Center across AWS Regions Amazon SageMaker HyperPod now supports data capture for inference workloads Amazon MWAA now supports Apache Airflow 3.2 Amazon Inspector is now available in the AWS Asia Pacific (Taipei) Region Amazon ECS introduces pause and continue controls for service deployments Amazon Managed Grafana now supports dual-stack connectivity (IPv6 and IPv4) AWS Management Console now displays AWS Local Zones in the Region Selector AWS Glue zero-ETL is now available in Asia Pacific (Mumbai) region Amazon Lightsail CDN distributions now support IPv6-only instances as origins Amazon EVS enables support for 32 hosts per environment AWS SAM CLI adds AWS CloudFormation Language Extensions support to accelerate local serverless development Amazon Redshift adds ALTER TABLE for Iceberg tables and writes via the AWS Glue Data Catalog mount Amazon SageMaker Studio now supports GPU capacity reservation through SageMaker Flexible Training Plans Introducing pre-fetching and IAM role assumption for AWS Secrets Manager Agent Amazon CloudWatch Logs announces increased query result limits Amazon EMR Serverless is now available in additional AWS Regions AWS Partner Central agents now accelerates opportunity creation Amazon Connect Cases now lets you edit related items and delete cases from the agent workspace Amazon RDS for PostgreSQL announces Extended Support minor versions 11.22-rds.20260224, 12.22-rds.20260224, and 13.23-rds.20260224 Amazon Managed Grafana now supports in-place upgrade to Grafana version 12.4 AWS announces AWS Interconnect - multicloud connectivity with Oracle Cloud Infrastructure in preview AWS Organizations now supports higher quotas for service control policies (SCPs) Amazon CloudFront announces Passthrough Mode for mutual TLS (Viewer) Amazon CloudFront announces support for OCSP Revocation for Mutual TLS (Viewer) Amazon Bedrock Introduces Advanced Prompt Optimization and Migration Tool Announcing general availability of Amazon EC2 M3 Ultra Mac instances Amazon EC2 High Memory U7i instances now available in AWS Europe (Paris) region SageMaker AI now supports serverless model customization for Qwen3.6 AWS Transform agents now available in Kiro, Claude, Cursor, and Codex AWS Transform now supports customer-owned artifact stores AWS Transform introduces the agent builder toolkit Kiro power for building customized transformation agents New models for image generation and text embeddings are now available in Amazon SageMaker JumpStart Three new models for speech recognition and text-to-speech are now available in Amazon SageMaker JumpStart ARC Region switch adds Lambda event source mapping execution block for event handling during failover Amazon Aurora DSQL now supports change data capture (Preview) Two new models for agentic coding and efficient AI are now available in Amazon SageMaker JumpStart Reference stack outputs across accounts and Regions with AWS CloudFormation and CDK Amazon EC2 X8aedz instances are now available in Europe (Ireland) region Amazon Connect Customer launches permission for agents to view only their own performance evaluations Amazon RDS for PostgreSQL supports minor versions 18.4, 17.10, 16.14, 15.18, and 14.23 AWS Transform adds agentic AI assistant to the AWS Toolkit for Visual Studio AWS RTB Fabric supports custom domains for real-time bidding workloads Amazon SageMaker Data Agent now available for IAM Identity Center domains Amazon FSx for OpenZFS now supports creating Multi-AZ file systems in shared VPCs Amazon RDS for Oracle now supports M8i and R8i instances with Oracle SE2 License Included AWS Lambda supports scheduled scaling for functions on Lambda Managed Instances Amazon EventBridge Scheduler adds 619 new SDK API actions, including Lambda Managed Instances AWS Security Agent now supports full repository code reviews Amazon SageMaker Feature Store now supports SageMaker Python SDK V3 Karpenter now supports Amazon Application Recovery Controller zonal shift Amazon CloudFront Premium flat-rate plan now supports configurable usage allowances Amazon Connect Customer now supports embedding Cases and Customer Profiles in custom agent applications Amazon Redshift launches RG instances powered by AWS Graviton Announcing Region Expansion of P5.48xl instances on SageMaker Studio notebooks Announcing Region Expansion of G6 instances on SageMaker Notebook Instances Announcing Region Expansion of P6-B200 instances on SageMaker Studio notebooks ENA Express for Amazon EC2 instances now supports traffic between Availability Zones Announcing Region Expansion of G6 instances on SageMaker Studio notebooks Announcing Region Expansion of G6e instances on SageMaker Studio notebooks Announcing Region Expansion of P4de instances on SageMaker Studio notebooks Amazon Aurora DSQL is now available in five additional AWS Regions AWS HealthOmics now supports caching of cancelled workflow runs Amazon SageMaker Studio notebooks now support P5.4xl instance types Amazon SageMaker Unified Studio adds getting started tutorials and in-product release notes Amazon Route 53 Domains adds support for 34 new Top Level Domains including .app, .dev, and .health. Claude Platform on AWS is now generally available AWS Transform adds containerization capability during migrations AWS Client VPN now supports Ubuntu OS version 26.04 LTS AWS Client VPN が Ubuntu OS バージョン 26.04 LTS のサポートを開始 AWS Client VPN 现在支持 Ubuntu 操作系统版本 26.04 LTS Amazon Connect adds default Step-by-Step Guides for After Contact Work Amazon Connect にアフターコンタクトワークのデフォルトのステップバイステップガイドが追加 Amazon Connect 添加了默认的联系后工作分步指南 Amazon Route 53 Global Resolver now lets you add and remove AWS Regions for anycast DNS resolution Amazon Route 53 Global Resolver でエニーキャスト DNS 解決のための AWS リージョンの追加と削除が可能に Amazon Route 53 Global Resolver 现在允许您添加和删除 AWS 区域以进行任播 DNS 解析
AWS Secrets Manager clients now support hybrid post-quantum TLS to protect secrets from quantum risks
2026-04-15 · via Recent Announcements

AWS Secrets Manager clients now support hybrid post-quantum key exchange using ML-KEM (Module-Lattice-based Key-Encapsulation Mechanism) to secure TLS connections for retrieving secrets. This protection is automatically enabled in Secrets Manager Agent (version 2.0.0+), AWS Lambda Extension (version 19+), and AWS Secrets and Configuration Provider (version 2.0.0+). For SDK-based clients, hybrid post-quantum key exchange is available in supported AWS SDKs including Rust, Go, Node.js, Kotlin, Python (with OpenSSL 3.5+), and Java v2 (v2.35.11+).

With this launch, your applications retrieve secrets over TLS connections through Secrets Manager clients, combining classical key exchange with post-quantum cryptography to protect against both traditional cryptographic attacks and future quantum computing risks known as  "harvest now, decrypt later" (HNDL). No code changes, configuration updates, or migration effort are required for use cases that have already upgraded to the latest client versions, except for Java v2 (see the documentation for details). For example, a microservice requiring multiple secrets at startup can now retrieve them over quantum-resistant TLS connections by simply upgrading to the latest Secrets Manager Agent version. You can verify hybrid post-quantum key exchange is active by checking AWS CloudTrail logs for the "X25519MLKEM768" key exchange algorithm in the tlsDetails field of GetSecretValue API calls.

Building on the service-side support for hybrid post-quantum key exchange using ML-KEM launched in 2025 (see the launch blog here), this release extends the support for hybrid post quantum key exchange for TLS to all Secrets Manager clients. To learn more, visit the AWS Secrets Manager documentation and the AWS Post-Quantum Cryptography migration page. Refer to the blog post for more details: Protecting your secrets from quantum risks.