Black Cat Security

AWS Week in Review – December 12, 2022

This post is part of our Week in Review series. Check back each week for a quick roundup of interesting news and announcements from AWS!

The world is asynchronous, is what Werner Vogels, Amazon CTO, reminded us during his keynote last week at AWS re:Invent. At the beginning of the keynote, he showed us how weird a synchronous world would be and how everything in nature is asynchronous. One example of an event-driven application he showcased during his keynote is Serverlesspresso, a project my team has been working on for the last year. And last week, we announced Serverlesspresso extensions, a new program that lets you contribute to Serverlesspresso and learn how event-driven applications can be extended.

Last Week’s Launches
Here are some launches that got my attention during the previous week.

Amazon SageMaker Studio now supports fine-grained data access control with AWS LakeFormation when accessing data through Amazon EMR. Now, when you connect to EMR clusters to SageMaker Studio notebooks, you can choose what runtime IAM role you want to connect with, and the notebooks will only access data and resources permitted by the attached runtime role.

Amazon Lex has now added support for Arabic, Cantonese, Norwegian, Swedish, Polish, and Finnish. This opens new possibilities to create chat bots and conversational experiences in more languages.

Amazon RDS Proxy now supports creating proxies in Amazon Aurora Global Database primary and secondary Regions. Now, building multi-Region applications with Amazon Aurora is simpler. RDS proxy sits between your application and the database pool and shares established database connections.

Amazon FSx for NetApp ONTAP launched many new features. First, it added the support for Nitro-based encryption of data in transit. It also extended NVMe read cache support to Single-AZ file systems. And it added four new features to ease the use of the service: easily assign a snapshot policy to your volumes, easily create data protection volumes, configure volumes so their tags are automatically copied to the backups, and finally, add or remove VPC route tables for your existing Multi-AZ file systems.

I would also like to mention two launches that happened before re:Invent but were not covered on the News Blog:

Amazon EventBridge Scheduler is a new capability from Amazon EventBridge that allows you to create, run, and manage scheduled tasks at scale. Using this new capability, you can schedule one-time or recurrent tasks across 270 AWS services.

AWS IoT RoboRunner is now generally available. Last year at re:Invent Channy wrote a blog post introducing the preview for this service. IoT RoboRunner is a robotic service that makes it easier to build and deploy applications for fleets of robots working seamlessly together.

For a full list of AWS announcements, be sure to keep an eye on the What’s New at AWS page.

Other AWS News
Some other updates and news that you may have missed:

I would like to recommend this really interesting Amazon Science article about federated learning. This is a framework that allows edge devices to work together to train a global model while keeping customers’ data on-device.

Podcast Charlas Técnicas de AWS – If you understand Spanish, this podcast is for you. Podcast Charlas Técnicas is one of the official AWS podcasts in Spanish, and every other week there is a new episode. Today the final episode for season three launched, and in it, we discussed many of the re:Invent launches. You can listen to all the episodes directly from your favorite podcast app or at AWS Podcasts en español.

AWS open-source news and updates–This is a newsletter curated by my colleague Ricardo to bring you the latest open-source projects, posts, events, and more.

Upcoming AWS Events
Check your calendars and sign up for these AWS events:

AWS Resiliency Hub Activation Day is a half-day technical virtual session to deep dive into the features and functionality of Resiliency Hub. You can register for free here.

AWS re:Invent recaps in your area. During the re:Invent week, we had lots of new announcements, and in the next weeks you can find in your area a recap of all these launches. All the events will be posted on this site, so check it regularly to find an event nearby.

AWS re:Invent keynotes, leadership sessions, and breakout sessions are available on demand. I recommend that you check the playlists and find the talks about your favorite topics in one collection.

That’s all for this week. Check back next Monday for another Week in Review!

— Marcia

Google Workspace Updates Weekly Recap – December 9, 2022

New updates 

Unless otherwise indicated, the features below are fully launched or in the process of rolling out (rollouts should take no more than 15 business days to complete), launching to both Rapid and Scheduled Release at the same time (if not, each stage of rollout should take no more than 15 business days to complete), and available to all Google Workspace and G Suite customers. 

See collaborator avatars in the toolbar of apps on Android devices 
In continuation of our efforts to improve the Google Workspace experience on large screen Android devices, we’re moving collaborator avatars from the overflow menu into the app toolbar at the top of your Android tablets and mobile devices. 
"widgets
Pin table headers when using pageless format on Google Docs 
When your Google Doc is set to the pageless format, you can now pin one or more table rows as header rows. When you scroll vertically past the top of the table, the headers will remain visible at the top of the window until you scroll to the bottom of the table. | Learn more
"pinned
Easily share files in Google Meet chat on web 
Currently, when you share the link to a Google Drive file in Meet chat, you have to ensure the document is shared with those on the call, either proactively or reactively, on a separate screen. Starting this week, when sharing a file in Meet chat, you will now be prompted to update the file sharing permissions to reflect which meeting attendees you’d like to have access to a particular file, all within Meet. | Roll out to Rapid Release and Scheduled Release domains began December 5, 2022 at an extended pace (potentially longer than 15 days for feature visibility). | Learn more. 
Warning banners for external email recipients on iOS devices
Beginning today, you'll see a warning banner when adding external recipients to an email on iOS. These warnings are already available for Gmail on the web and Android devices. Note that admins can turn these specific warning labels on or off for their organization. | Roll out to Rapid Release and Scheduled Release domains began December 9, 2022 at an extended pace (potentially longer than 15 days for feature visibility). 
Improvements for using Miro in Google Meet
We've made two enhancements for the Miro experience within Google Meet:
  • Meeting participants will see a dialog invite instead of a chat message asking them to join a whiteboarding session.
  • Meeting hosts now have the option to end collaboration for the group as a whole. Alternatively, meeting participants will have the ability to leave the session individually.
We hope these improvements create a smoother collaborative experience when using Miro within Google Meet. | Learn more here and here.

Previous announcements


The announcements below were published on the Workspace Updates blog earlier this week. Please refer to the original blog posts for complete details.

More ways to prevent data exfiltration on iOS devices 
In 2020, we released several data exfiltration protections for iOS devices. Today, we’re announcing the next set of enhancements for data exfiltration protections for iOS. We’re expanding these security controls to give admins more ways to protect sensitive company data on iOS devices. | Available to Google Workspace Enterprise Standard, Enterprise Plus, Enterprise for Education, and Cloud Identity Premium customers only. | Learn more
New default setting for content managers to modify shared drives coming in February 2023 
Starting this week, admins will see a new shared drive setting that can be enabled or disabled to give content managers the ability to share folders in shared drives. In February 2023, all content managers will have the ability to share folders by default. If you’d like this feature to remain off for end users, disable the setting now. | Available to Google Workspace Essentials, Business Standard, Business Plus, Enterprise Essentials, Enterprise Standard, Enterprise Plus, Education Fundamentals, Education Plus, Education Standard, the Teaching and Learning Upgrade, and Nonprofits, as well as legacy G Suite Business customers only. | Learn more
Create drop-down chips in Google Sheets 
We’ve added dropdown chips in Google Sheets, a custom formatting feature that is already available in Docs. They also enable you to easily indicate statuses or various project milestones outlined in your Sheet. | Learn more
Collaborate with colleagues in Google Slides through a new ‘Follow’ feature
We’re introducing a new ‘Follow’ feature that allows you to collaborate with colleagues in real-time on Google Slides. Simply, click on a collaborator’s avatar in the Slides toolbar to jump to whatever slide they are on, and continue to move with them as they navigate and make changes to a presentation. | Learn more.

Completed feature rollouts


The features below completed their rollouts to Rapid Release domains, Scheduled Release domains, or both in the past week. Please refer to the original blog post for additional details.


Rapid Release Domains:


Rapid and Scheduled Release Domains:




For a recap of announcements in the past six months, check out What’s new in Google Workspace (recent releases).

Collaborate with colleagues in Google Slides through a new ‘Follow’ feature

What’s changing 

We’re introducing a new ‘Follow’ feature that allows you to collaborate with colleagues in real-time on Google Slides. Building upon the existing feature to see what slide your colleague is on, you can now click on a collaborator’s avatar in the Slides toolbar to jump to whatever slide they are on, and continue to move with them as they navigate and make changes to a presentation. 

Getting started 

  • Admins: There is no admin control for this feature. 
  • End users: This feature will be ON by default. To follow a collaborator, click their avatar in the Slides toolbar. If you hover over a followed avatar, a “Following” badge will appear. To stop following a collaborator, click on their avatar again. 
    • You will also stop following the collaborator if: 
      • The collaborator refreshes or leaves the presentation. 
      • You make any edits to the presentation. 
      • You click a different slide. 
      • You enter Slideshow mode. 
    • Visit the Help Center to learn more about following a collaboration on Google Slides

Rollout pace 

Availability 

  • Available to all Google Workspace customers, as well as legacy G Suite Basic and Business customers 
  • Available to users with personal Google Accounts 

Resources 

Create drop-down chips in Google Sheets

What’s changing 

Today we’re adding dropdown chips in Google Sheets. This is the latest smart canvas feature highlighting the next evolution of collaboration for Google Workspace. Dropdown chips are a custom formatting feature that is already available in Docs, and they enable you to easily indicate statuses or various project milestones outlined in your Sheet. 
Additionally, we’ve modified the workflow for creating and managing all data validation rules, including dropdown chips and checkboxes. You can now view and edit all existing rules that have been created in a specific Sheets tab and create additional rules from a new sidebar view. This update improves the consistency of your overall Sheets experience as this now mirrors the workflows for creating conditional formatting, protected ranges, and named ranges rules. 

Getting started 

  • Admins: There is no admin control for this feature.
  • End users: This feature will be ON by default. You can insert a dropdown chip by selecting Insert > Dropdown or by typing “@” followed by “dropdown”.Visit the Help Center to learn more about inserting smart chips in your Google Sheets.

Rollout pace 

Availability 

  • Available to all Google Workspace customers, as well as legacy G Suite Basic and Business customers 
  • Available to users with personal Google Accounts 

Resources 

New default setting for content managers to modify shared drives coming in February 2023

What’s changing

In 2018, we launched the Content manager role, making it easier to manage files in shared drives. Currently, content managers have the ability to edit, reorganize, and delete shared drive content, but they cannot share folders in shared drives. 
Starting today, admins will see a new shared drive setting that can be enabled or disabled to give content managers the ability to share folders in shared drives. 
In February 2023, all content managers will have the ability to share folders by default. If you’d like this feature to remain off for end users, disable the setting now. 

Who’s impacted 

Admins and end users 

Why it matters 

Enabling content managers to share folders is a highly requested feature that will help organizations better manage access to their data. 

Additional details 

We will provide an update in February 2023 with the exact date that all content managers will have the ability to share folders by default. 

Getting started 

  • Admins: 
    • This setting is currently ON by default. To disable the setting for content managers to share folders, go to the "Sharing settings" in the Drive and Docs section of the Admin Console > scroll to the "Shared drive creation" section > change the "Allow content managers to share folders" setting to OFF. 
      • Note: If enabled, Content managers will be able to share folders starting in February 2023. 
    • Visit the Help Center to learn more about managing shared drives as an admin. 
  • End users: If enabled by your admin, content managers can share folders starting February 2023. Visit the Help Center to learn more about shared drives

Rollout pace 

Admin controls: 

End user setting: 

Availability 

  • Available to Google Workspace Essentials, Business Standard, Business Plus, Enterprise Essentials, Enterprise Standard, Enterprise Plus, Education Fundamentals, Education Plus, Education Standard, the Teaching and Learning Upgrade, and Nonprofits, as well as legacy G Suite Business customers 
  • Not available to Google Workspace Business Starter, Frontline, and legacy G Suite Basic customers 
  • Not available to users with personal Google Accounts 

Resources