ICYMI: August 2026 @AWS Security
Security Blog
This article is a monthly digest of AWS security updates, featuring 20 blog posts, 23 security bulletins, and 17 code samples published in August 2026.
- Identity and access management: Amazon Cognito provisioned limits, AWS Managed Microsoft AD 10-year milestone, redesigned sign-in experience, Management Console Private Access, and IAM Identity Center governance automation
- Data protection: KMS data key caching, ACME protocol support in Certificate Manager, S3 over-permissioned access remediation, and email validation deprecation timeline
- AI security: Custom authentication in Bedrock AgentCore Gateway, user authorization propagation in AI agents, and Bedrock Guardrails extension to tool interactions
- Threat detection: Security Hub Extended supply chain security, multi-stage attack detection via cross-service signal correlation, AWS Continuum code vulnerability integration, and Upwind runtime protection
- Infrastructure security: AWS Network Firewall rule hit count tracking
- Governance: Landing Zone Accelerator C5:2020 and ISM assessments, automated Service Control Policies at scale
- Security bulletins: 23 vulnerabilities across SDKs, MCP servers, and OpenSearch with emphasis on AI agent tool surface risks
- Code samples: 17 new samples focusing on agentic AI governance, telemetry, compliance automation, and data residency
The digest provides comprehensive guidance and runnable code for securing enterprise agentic AI workloads, console access in isolated VPCs, attribute-based access control, and multi-stage threat detection patterns.
The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.
The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.