Welcome to above the clouds

GCP – Celebrating 10 years of GKE: Incredible customer journeys, amazing AI futures
The evolution of the cloud has been tremendous over the past decade. Every step of the way, Google Kubernetes Engine (GKE) has been there to meet new challenges. From giving DevOps more scalable foundations to supporting the rise of cloud-native AI, we took Kubernetes’ brilliance and gave it the fully managed service it deserved to […]

GCP – From Help Desk to Hypervisor: Defending Your VMware vSphere Estate from UNC3944
Introduction In mid 2025, Google Threat Intelligence Group (GITG) identified a sophisticated and aggressive cyber campaign targeting multiple industries, including retail, airline, and insurance. This was the work of UNC3944, a financially motivated threat group that has exhibited overlaps with public reporting of “0ktapus,” “Octo Tempest,” and “Scattered Spider.” Following public alerts from the Federal […]

GCP – Beyond Convenience: Exposing the Risks of VMware vSphere Active Directory Integration
Written by: Stuart Carrera, Brian Meyer Executive Summary Broadcom’s VMware vSphere product remains a popular choice for private cloud virtualization, underpinning critical infrastructure. Far from fading, organizations continue to rely heavily on vSphere for stability and control. We’re also seeing a distinct trend where critical workloads are being repatriated from public cloud services to these […]

AWS – Amazon ECR now supports exceptions to tag immutability
Amazon Elastic Container Registry (ECR) now allows you specify exceptions to image tag immutability setting. You can now provide a list of tag filters to exempt certain tags from the tag immutability setting, allowing you to enforce immutability for most tags while retaining flexibility for others. ECR image tag settings allows you to control whether […]

AWS – Amazon Timestream for InfluxDB now supports 24xlarge memory-optimized instances
Amazon Timestream for InfluxDB now offers 24xlarge memory-optimized instances, providing enhanced performance for demanding time-series workloads. This new instance type is generally available for both Single-AZ and Multi-AZ deployments, as well as Multi-AZ Read Replica clusters, enabling customers to scale their time-series database solutions. The 24xlarge instance delivers 96 vCPU, 768 GiB of memory, and […]

AWS – Amazon EBS io2 Block Express supports all commercial and AWS GovCloud (US) Regions
Amazon EBS io2 Block Express volumes are now available in all commercial and AWS GovCloud (US) Regions, except China regions. io2 Block Express leverage the latest generation of EBS storage server architecture designed to deliver consistent sub-millisecond latency and 99.999% durability. With a single io2 Block Express volume, you can achieve 256,000 IOPS, 4GiB/s throughput, […]

AWS – AWS Audit Manager enhances evidence collection for better compliance insights
Today, AWS Audit Manager announces it has updated 14 standard frameworks, to enhance evidence collection capabilities and help customers meet their compliance requirements while optimizing costs. This update improves evidence relevance across key frameworks like SOC 2 and PCI DSS v4.0, and enhances framework coverage for better compliance validation. These updates will streamline number of […]

AWS – AWS Deadline Cloud now supports resource endpoints for connecting shared storage to service-managed fleets
AWS Deadline Cloud now supports connecting resources in your Amazon Virtual Private Cloud (VPC), like shared storage or a license server, to your service-managed fleets. AWS Deadline Cloud is a fully managed service that simplifies render management for teams creating computer-generated graphics and visual effects for films, television, broadcasting, web content, and design. Render farm […]

AWS – AWS Client VPN extends availability to two additional AWS Regions
AWS Client VPN is now available in two new Asia Pacific Regions: Malaysia and Thailand. This fully managed service enables customers to securely connect their remote workforce to resources in AWS or on-premises networks. AWS Client VPN eliminates the need for hardware VPN appliances and complex operational management through its pay-as-you-go model. Organizations can easily […]
AWS – Simplify AWS Organization Tag Policies using new wildcard statement
AWS Organizations Tag Policies announces wildcard support for Tag Policies using ALL_SUPPORTED in the Resource element. With this, you can simplify your policy authoring experience and reduce your policy size. You can now specify that your Tag Policy applies to all supported resource types for a given AWS service in a single line, instead of […]