Category: Security, Identity & Compliance
Here are the latest news items for Amazon Cognito.
Link: https://aws.amazon.com/about-aws/whats-new/2026/03/aws-config-new-resource-types/
AWS Config now supports 30 additional AWS resource types across key services including Amazon Bedrock AgentCore and Amazon Cognito. This expansion provides greater coverage over your AWS environment, enabling you to more effectively discover, assess, audit, and remediate an even broader range of resources.
With this launch, if you have enabled recording for all resource types, then AWS Config will automatically track these new additions. The newly supported resource types are also available in Config rules and Config aggregators.
You can now use AWS Config to monitor the following newly supported resource types in all AWS Regions where the supported resources are available:
Resource Types:
| AWS::AppSync::DataSource | AWS::Deadline::LicenseEndpoint |
| AWS::Batch::ConsumableResource | AWS::Deadline::QueueEnvironment |
| AWS::Bedrock::DataSource | AWS::Detective::OrganizationAdmin |
| AWS::BedrockAgentCore::Gateway | AWS::GameLift::ContainerFleet |
| AWS::BedrockAgentCore::Memory | AWS::GameLift::ContainerGroupDefinition |
| AWS::Cognito::IdentityPoolRoleAttachment | AWS::GameLift::GameServerGroup |
| AWS::Cognito::LogDeliveryConfiguration | AWS::GameLift::Location |
| AWS::Cognito::UserPoolUICustomizationAttachment | AWS::IoT::TopicRule |
| AWS::Connect::RoutingProfile | AWS::Omics::ReferenceStore |
| AWS::DataBrew::Dataset | AWS::PCAConnectorAD::Template |
| AWS::DataBrew::Job | AWS::PCAConnectorSCEP::Challenge |
| AWS::DataBrew::Project | AWS::ResourceExplorer2::View |
| AWS::DataBrew::Recipe | AWS::ResourceGroups::Group |
| AWS::DataBrew::Ruleset | AWS::Scheduler::ScheduleGroup |
| AWS::DataBrew::Schedule | AWS::VerifiedPermissions::IdentitySource |
Published: 2026-03-02 16:00:00+00:00
Link: https://aws.amazon.com/about-aws/whats-new/2026/02/amazon-cognito-client-secret-lifecycle/
Amazon Cognito enhances client secret lifecycle management for app clients of Cognito user pools by adding client secret rotation and support for custom client secrets. Cognito helps you implement secure sign-in and access control for users, AI agents, and microservices in minutes, and a Cognito app client is a configuration that interacts with one mobile or web application that authenticates with Cognito. Previously, Cognito automatically generated all app client secrets. With this launch, in addition to the automatically generated secrets, you have the option to bring your own custom client secrets for new or existing app clients. Additionally, you can now rotate client secrets on-demand and maintain up to two active client secrets per app client.
The new client secret lifecycle management capabilities address needs for organizations with periodic credential rotation requirements, companies improving security posture, and enterprises migrating from other authentication systems to Cognito. Maintaining two active secrets per app client allows gradual transition to the new secret without application downtime.
Client secret rotation and custom client secrets are available in all AWS Regions where Amazon Cognito user pools are available. To learn more, see the Amazon Cognito Developer Guide. You can get started using the new capabilities through the AWS Management Console, AWS Command Line Interface (CLI), AWS Software Development Kits (SDKs), or AWS CloudFormation.
Published: 2026-02-26 17:00:00+00:00
Published: 2025-12-15 16:42:05+00:00