Relevant News - Amazon Cognito

Category: Security, Identity & Compliance

Here are the latest news items for Amazon Cognito.

AWS Config now supports 30 new resource types

πŸŽ‰
Service Feature Change
TL;DR: AWS Config now supports 30 additional resource types across services like Amazon Bedrock AgentCore and Amazon Cognito for enhanced monitoring.
AWS Services: AWS Config, Amazon Bedrock, Amazon Cognito, AWS AppSync, AWS Batch, AWS Deadline, AWS Detective, Amazon GameLift, AWS IoT, AWS Omics, AWS PCA Connector, AWS Resource Explorer, AWS Resource Groups, Amazon EventBridge Scheduler, Amazon Verified Permissions, AWS Glue DataBrew, Amazon Connect

Link: https://aws.amazon.com/about-aws/whats-new/2026/03/aws-config-new-resource-types/

AWS Config now supports 30 additional AWS resource types across key services including Amazon Bedrock AgentCore and Amazon Cognito. This expansion provides greater coverage over your AWS environment, enabling you to more effectively discover, assess, audit, and remediate an even broader range of resources.

With this launch, if you have enabled recording for all resource types, then AWS Config will automatically track these new additions. The newly supported resource types are also available in Config rules and Config aggregators.

You can now use AWS Config to monitor the following newly supported resource types in all AWS Regions where the supported resources are available:

Resource Types:

AWS::AppSync::DataSource AWS::Deadline::LicenseEndpoint
AWS::Batch::ConsumableResource AWS::Deadline::QueueEnvironment
AWS::Bedrock::DataSource AWS::Detective::OrganizationAdmin
AWS::BedrockAgentCore::Gateway AWS::GameLift::ContainerFleet
AWS::BedrockAgentCore::Memory AWS::GameLift::ContainerGroupDefinition
AWS::Cognito::IdentityPoolRoleAttachment AWS::GameLift::GameServerGroup
AWS::Cognito::LogDeliveryConfiguration AWS::GameLift::Location
AWS::Cognito::UserPoolUICustomizationAttachment AWS::IoT::TopicRule
AWS::Connect::RoutingProfile AWS::Omics::ReferenceStore
AWS::DataBrew::Dataset AWS::PCAConnectorAD::Template
AWS::DataBrew::Job AWS::PCAConnectorSCEP::Challenge
AWS::DataBrew::Project AWS::ResourceExplorer2::View
AWS::DataBrew::Recipe AWS::ResourceGroups::Group
AWS::DataBrew::Ruleset AWS::Scheduler::ScheduleGroup
AWS::DataBrew::Schedule AWS::VerifiedPermissions::IdentitySource

Published: 2026-03-02 16:00:00+00:00

Amazon Cognito enhances client secret management with secret rotation and custom secrets

πŸŽ‰
Service Feature Change
TL;DR: Amazon Cognito adds client secret rotation and custom client secrets for enhanced security and lifecycle management.
AWS Services: Amazon Cognito, AWS Management Console, AWS Command Line Interface, AWS Software Development Kits, AWS CloudFormation

Link: https://aws.amazon.com/about-aws/whats-new/2026/02/amazon-cognito-client-secret-lifecycle/

Amazon Cognito enhances client secret lifecycle management for app clients of Cognito user pools by adding client secret rotation and support for custom client secrets. Cognito helps you implement secure sign-in and access control for users, AI agents, and microservices in minutes, and a Cognito app client is a configuration that interacts with one mobile or web application that authenticates with Cognito. Previously, Cognito automatically generated all app client secrets. With this launch, in addition to the automatically generated secrets, you have the option to bring your own custom client secrets for new or existing app clients. Additionally, you can now rotate client secrets on-demand and maintain up to two active client secrets per app client.

The new client secret lifecycle management capabilities address needs for organizations with periodic credential rotation requirements, companies improving security posture, and enterprises migrating from other authentication systems to Cognito. Maintaining two active secrets per app client allows gradual transition to the new secret without application downtime.

Client secret rotation and custom client secrets are available in all AWS Regions where Amazon Cognito user pools are available. To learn more, see the Amazon Cognito Developer Guide. You can get started using the new capabilities through the AWS Management Console, AWS Command Line Interface (CLI), AWS Software Development Kits (SDKs), or AWS CloudFormation.

Published: 2026-02-26 17:00:00+00:00

AWS Weekly Roundup: Amazon ECS, Amazon CloudWatch, Amazon Cognito and more (December 15, 2025) Blog Post

πŸš€
New Service Feature Introduction
TL;DR: AWS Weekly Roundup summarizing 2025 highlights including re:Invent, AWS Summits, and technology advancements across various AWS services.
AWS Services: Amazon ECS, Amazon CloudWatch, Amazon Cognito

Link: https://aws.amazon.com/blogs/aws/aws-weekly-roundup-amazon-ecs-amazon-cloudwatch-amazon-cognito-and-more-december-15-2025/

Can you believe it? We’re nearly at the end of 2025. And what a year it’s been! From re:Invent recap events, to AWS Summits, AWS Innovate, AWS re:Inforce, Community Days, and DevDays and, recently, adding that cherry on the cake, re:Invent 2025, we have lived through a year filled with exciting moments and technology advancements […]

Published: 2025-12-15 16:42:05+00:00