Amazon Web Services (AWS) has introduced a suite of autonomous AI-powered agents designed to automate and streamline DevOps and code modernization tasks. Announced at AWS re:Invent, these "frontier agents" are capable of operating for extended periods without human intervention, handling tasks such as code repository management, application failure monitoring, and code vulnerability analysis. The agents aim to reduce the manual burden on developers by automating the coordination and execution of complex workflows, allowing teams to focus on higher-level objectives rather than routine oversight.
In addition to the new DevOps agents, AWS has expanded its AWS Transform service with enhanced agentic capabilities for modernizing legacy code, applications, and infrastructure. The updated service now includes mainframe modernization agents that can analyze legacy code, generate automated test plans, and assist in migration planning by extracting business context from unstructured data. AWS is also enabling integration with third-party migration tools through its new composability initiative, further supporting enterprises in reducing technical debt and improving security by modernizing custom and legacy systems.

Track how attackers are adapting to this technology.
3 events from the most recent confirmed update back to the earliest known activity.
AWS said Kiro was immediately available to developers, while the AWS Security Agent and AWS DevOps Agent were accessible through the AWS Management Console. The launch marked AWS's entry into a competitive market for AI-driven software, operations, and security automation.
At its re:Invent conference, AWS introduced three AI-powered frontier agents: Kiro for code management, AWS Security Agent, and AWS DevOps Agent. AWS said the agents can autonomously handle tasks such as repository updates, compliance checks, penetration testing, and root cause analysis across existing workflows.
AWS added new capabilities to AWS Transform, including mainframe modernization agents, enhanced VMware migration tools, and AWS Transform custom for applying learned code modernization patterns at scale. The update was positioned as a way to reduce technical debt in legacy code, applications, and infrastructure, while still requiring developer oversight.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
Follow how adversaries are adapting to this technology, and where it touches your stack today.
4 references tracked. Mallory keeps watching after this page renders.
cio.com
Open sourceciodive.com
Open sourcezdnet.com
Open sourcecio.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.