Welcome to issue #465 August 25th, 2025

News

Official Blog Public Sector

From silos to synergy: New Compliance Manager, now in preview - Google Cloud Compliance Manager, now in preview, can help simplify and enhance how organizations manage security, privacy, and compliance in the cloud.

Data Analytics Databases Official Blog Public Sector

Going beyond basic data security with Google Cloud DSPM - Our new DSPM offering, now in preview, provides end-to-end governance for data security, privacy, and compliance. Here’s how it can help you.

Google Kubernetes Engine Networking Official Blog

IP address management made easy: Announcing auto IPAM for GKE clusters - Google Kubernetes Engine now offers Auto-IPAM, to simplify IP Address Management (IPAM) and improve IP efficiency for your GKE clusters.

Gemini Official Blog

Don’t just speculate, investigate! Gemini Cloud Assist now offers root-cause analysis - Gemini Cloud Assist investigations, a root-cause analysis AI agent for troubleshooting infrastructure and applications, is now available in preview.

Official Blog Public Sector Workspace

Now available: Cloud HSM as an encryption key service for Workspace client-side encryption - To help highly-regulated organizations meet their encryption key service obligation, we are now offering Cloud HSM for Google Workspace CSE customers.

Gemini Official Blog Public Sector

Introducing ‘Gemini for Government’: Supporting the U.S. Government’s Transformation with AI - Google Public Sector unveils ‘Gemini for Government’, a new AI platform to help U.S. agencies innovate. Learn about this secure, FedRAMP-authorized solution.

Official Blog

Announcing new capabilities for enabling defenders and securing AI innovation - At Security Summit 2025, we’re sharing new capabilities to help secure your AI initiatives, and to help you use AI to make your organization more secure.

Generative AI Infrastructure Official Blog Sustainability

How much energy does Google’s AI use? We did the math - A methodology for measuring the energy, emissions, and water impact of Gemini prompts shines a light on the environmental impact of AI inference.

Gaming Official Blog Partners

The AI-powered shift to “living games:” Meet the customers and partners leveling up the ways we play - Atlas, Embody, Ludeo, Nacon, and Nitrado are among the pioneers pushing the boundaries of what's possible in games with AI.

AI Official Blog Quadrant

Google is a Leader and positioned furthest in vision in the 2025 Gartner® Magic Quadrant™ for Conversational AI Platforms - Google was named a Leader in the Gartner 2025 Magic Quadrant for Conversational AI Platforms.

Articles, Tutorials

Infrastructure, Networking, Security, Kubernetes

Official Blog Threat Intelligence

A Cereal Offender: Analyzing the CORNFLAKE.V3 Backdoor - A campaign involving a financially motivated group deploying a downloader that delivers CORNFLAKE.V3 malware.

Gemini Private Service Connect Secure Web Proxy Terraform

Vibe coding Google Cloud networking — Gemini, Secure Web Proxy (SWP), and Private Service Connect (PSC) - Using Gemini, a Terraform script was created to automate the environment build, highlighting the efficiency gains of AI-assisted infrastructure creation, even requiring multiple iterations.

Cloud Armor Security

Key Components of Google Cloud Armor’s Security Policies: A Detailed Guide - An overview of Cloud Armor Security Policies.

Cloud Interconnect

Leverage Cloud Pathfinder to find last mile to Google Cloud Dedicated Interconnect locations - Find information and get quotes for last mile to Google Cloud Dedicated Interconnect locations.

App Development, Serverless, Databases, DevOps

Cloud Run GitHub Paywall Python

How to Deploy Django to Google Cloud Run using GitHub Actions - This article guides users on deploying Django applications to Google Cloud Run using GitHub Actions for automated deployments.

Cloud Functions Cloud Run DevOps Paywall

The Truth About Cold Starts in Google Cloud Run & Functions - This article explains how to optimize cold starts, and understanding the underlying mechanics can help developers reduce their impact.

GCP Experience Storage

Persistent Storage in Local SSDs? Here’s how IndiaMART does that! - IndiaMART reduced Elasticsearch server costs by 57% by transitioning from standard SSDs to Local SSDs.

Python

GCP Notifier: Production-Ready Python Alerts for Email and Google Chat in Google Cloud - GCP Notifier is a Python library designed for sending notifications via Email and Google Chat in Google Cloud Platform.

AlloyDB

Google Cloud Database Digest: AlloyDB’s ScaNN Vector Index Unifies Your Data & AI - The latest GCP database updates and what they mean for your production systems, dev workflows, and architecture.

Big Data, Analytics, ML&AI

GCP Experience Official Blog TPU

An efficient path to production AI: Kakao’s journey with JAX and Cloud TPUs - Kakao’s approach provides a compelling example of the high-performance array computing framework JAX for AI model development at scale.

BigQuery Data Analytics Databricks Official Blog

Intelligent code conversion: Databricks Spark SQL to BigQuery SQL via Gemini - Automate your Databricks to BigQuery migration. Learn how to use Gemini to translate complex SQL code accurately and save hours of manual work.

BigQuery Serverless

How to Enable Self Service on Google Cloud - Navigating Agility vs. Governance with Google Cloud’s Serverless Innovations.

Apache Beam Big Data Cloud Dataflow

Unlocking Efficiency: Map-Side Aggregation (Combiner Lifting) in Apache Beam and Dataflow - Combiner lifting, a powerful optimization in Apache Beam and Dataflow, reduces the amount of data shuffled across the network by pre-aggregating elements, decreasing processing time and cost.§.

AI BigQuery

Solving Marketing Attribution Mysteries with BigQuery AI - From unstructured data to $434K in revenue insights.

Generative AI Official Blog

Here’s which Google AI developer tool to use for each situation - Understand which Google AI tools best suit your software engineering needs, including Gemini CLI, Gemini Code Assist, Firebase Studio, and Google AI Studio.

BigQuery

Automated Data Quality in BigQuery: Autoencoders and PCA - Advanced Anomaly Detection in BigQuery ML Using Autoencoders and PCA for Continuous Data Quality Monitoring.

Generative AI Official Blog

101+ gen AI use cases with technical blueprints - Start implementing with AI. Use 101 technical blueprints to help you get started with the right Google Cloud tech stack.

ADK Gemini Official Blog

How to build a real-time voice agent with Gemini and Google ADK - Learn to build a real-time voice agent using Google's Gemini, ADK, and A2A Protocol. This guide covers creating an intelligent, responsive voice agent with Google Search & Maps integration.

Vertex AI

Hybrid Search on Vertex AI Vector Search (GCP) with Python - A practical guide to indexing, metadata filters, and RRF-based hybrid search on Vertex AI with Python.

Generative AI MCP

May the Search Be With You - How to build agentic tools using vector search with MCP Toolbox.

Gemini CLI

Gemini CLI Tutorial Series — Part 10: Gemini CLI & VS Code Integration - Part 10 of the Gemini CLI Tutorial series.

AI GPU Infrastructure Machine Learning

AI/Infra Inferencing — Serve Qwen 3 235B Thinking on Google Cloud A4 (B200 GPUs) using vLLM and GKE - The article demonstrates how to serve the Qwen3-235B-A22B-Thinking-2507 large language model on Google Cloud using NVIDIA B200 GPUs, vLLM for efficient inference, and a GKE Autopilot cluster.

AI Cloud Run

Serverless AI: Qwen3 Embeddings with Cloud Run

Slides, Videos, Audio

Kubernetes Podcast - #258 LLM-D, with Clayton Coleman and Rob Shaw.

Security Podcast - #239 Linux Security: The Detection and Response Disconnect and Where Is My Agentless EDR.

 

Releases

Agent Assist - Article suggestion and FAQ Assist are no longer in use and you can't create new conversation profiles for them.

Apigee API Hub - Deprovision API hub in the UI You can now deprovision an API hub instance from the API hub > Settings > Actions page in the Google Cloud console. Create and delete custom plugins in the UI You can now create and delete custom plugins from the API hub > Settings > Plugins page in the Google Cloud console.

Apigee UI - On August 20, 2025, we released an updated version of the Apigee UI. Added Name column to API Products table Added a column to the API Products table to display the product name.

AppEngine Flexible Go - Support for Go 1.25 runtime is in General Availability (GA).

AppEngine Standard Go - Support for Go 1.25 runtime is in General Availability (GA).

Application Integration - Standard canvas view The integration editor now features a single, standard canvas view.

Cloud Architecture Center - (New guide) Oracle PeopleSoft on Compute Engine with Oracle Exadata: Shows how to build the infrastructure to run Oracle PeopleSoft applications with OCI Exadata databases in Google Cloud.

BigQuery - Multi-statement transactions are now available for BigLake Iceberg tables in BigQuery. Starting September 25, 2025, the BigQuery Data Transfer Service for third-party SAAS and database connectors will update to a consumption-based pricing model. In the BigQuery console, you can now use the Reference panel to do the following: In the query editor, you can use the Reference panel to preview the schema details of tables, snapshots, views, and materialized views, or open these resources in a new tab. When you use the Data Science Agent in BigQuery, you can now use the table selector to choose one or more BigQuery tables to analyze.

Chronicle - Enhanced curated detections has been enhanced with composite detection content for Mandiant Hunt Cloud Classification, including AWS, GCP, and Azure. New rules added to rule pack Curated Detections has been enhanced with additional Chrome Enterprise Premium Browser Threat detections. Composite detections are now generally available The composite detections feature is now in General Availability. Reference lists retiring The reference list functionality is being phased out of the Google SecOps platform.

Chronicle SOAR - Release 6.3.59 is being rolled out to the first phase of regions as listed here. Release 6.3.58 is now available for all regions. Release 6.3.58 is being rolled out to the first phase of regions as listed here.

Contact Center AI Platform - Version 3.37 is released All release notes published on this date are part of version 3.37. Restrict email transfers You can now configure your instance to prevent users with the agent role from transferring email sessions to other agents. Skip the connecting message playback You can now configure your instance to skip playback of the connecting message when calls are connected to agents. Workforce Management terminology update We've updated the terminology in the Workforce Management interface to align with Google Cloud CCaaS terminology. Generative knowledge assist is available in Agent Desktop Generative knowledge assist is now available in Agent Desktop as a widget that you can drag into a desktop panel. Generative knowledge assist is available in the agent adapter Generative knowledge assist is now available in the agent adapter. Web SDK version 3.37 Starting with version 3.37, web SDK releases align with portal releases and share the same version number. The following issues were addressed in this release: Fixed an issue where a blank error message box appeared in the agent adapter when a call connected.

Database Migration Service - Database Migration Service for homogeneous PostgreSQL migrations to AlloyDB for PostgreSQL now supports PostgreSQL version 17.

Dataform - A security vulnerability was discovered in the Dataform API.

Dataproc Serverless - New Dataproc Serverless for Spark runtime versions: 1.2.58 2.2.58 2.3.9. Serverless for Apache Spark: Fixed a bug in Dataproc Batches that occasionally caused higher latency. New Dataproc on Compute Engine subminor image versions: 2.0.146-debian10, 2.0.146-ubuntu18, 2.0.146-rocky8 2.1.95-debian11, 2.1.95-ubuntu20, 2.1.95-ubuntu20-arm, 2.1.95-rocky8 2.2.63-debian12, 2.2.63-ubuntu22, 2.2.63-ubuntu22-arm, 2.2.63-rocky9 2.3.9-debian12, 2.3.9-ubuntu22, 2.3.9-ubuntu22-arm, 2.3.9-ml-ubuntu22, 2.3.9-rocky9.

Dataproc - New Dataproc Serverless for Spark runtime versions: 1.2.58 2.2.58 2.3.9. Serverless for Apache Spark: Fixed a bug in Dataproc Batches that occasionally caused higher latency. New Dataproc on Compute Engine subminor image versions: 2.0.146-debian10, 2.0.146-ubuntu18, 2.0.146-rocky8 2.1.95-debian11, 2.1.95-ubuntu20, 2.1.95-ubuntu20-arm, 2.1.95-rocky8 2.2.63-debian12, 2.2.63-ubuntu22, 2.2.63-ubuntu22-arm, 2.2.63-rocky9 2.3.9-debian12, 2.3.9-ubuntu22, 2.3.9-ubuntu22-arm, 2.3.9-ml-ubuntu22, 2.3.9-rocky9.

Cloud Functions - Support for Go 1.25 runtime is in General Availability (GA).

Backup for GKE - You can use custom constraints with Organization Policy to provide more granular control over specific fields for some Backup for GKE resources.

Google Kubernetes Engine - (2025-R35) Version updates GKE cluster versions have been updated. The M4 machine series is generally available in GKE Autopilot clusters with version 1.33.4-gke.1013000 or later. Starting with GKE version 1.33.2-gke.1240000 and later, you can now specify the network service tier (Standard or Premium) for ephemeral IP addresses used by the gke-l7-regional-external-managed GatewayClass. Starting in GKE 1.33.3-gke.1136000, the validation of the HealthCheckPolicy CRD is now performed earlier by GKE Gateway. A fix is available for an issue where the device-fs-monitor component in the Node Problem Detector generated false ReadOnlyLocalSSDDetected warnings on nodes that did not have local SSDs.

GKE new features - The M4 machine series is generally available in GKE Autopilot clusters with version 1.33.4-gke.1013000 or later. Starting with GKE version 1.33.2-gke.1240000 and later, you can now specify the network service tier (Standard or Premium) for ephemeral IP addresses used by the gke-l7-regional-external-managed GatewayClass.

Cloud Monitoring - The following infrastructure is now integrated with Application Monitoring, which is in public preview: AlloyDB for PostgreSQL clusters and services, Bigtable clusters and services, Dataproc Metastore services, Cloud Deploy delivery pipelines, Firestore databases, Secret Manager secrets.

NetApp - Large capacity volumes now support a maximum capacity of 3 PiB.

Network Connectivity Center - You can allow the exchange of privately used public IPv4 addresses with VPC spokes and producer VPC spokes.

Resource Manager - You can use custom constraints with Organization Policy to provide more granular control over specific fields for some Backup for GKE resources. You can now use organization policy conditions to match a tag key.

Cloud Run - Support for Go 1.25 runtime is in General Availability (GA). For Cloud Run source deployed services and functions with GPU enabled, Cloud Run defaults to using Cloud Build's e2-highcpu-8 machine type for the build process when you use the gcloud beta run command (Preview).

Secure Source Manager - You can now use a Google-managed certificate when you create a create a Private Service Connect Secure Source Manager instance.

Security Command Center - Issues, chokepoints (for Google Cloud), and predefined security graph rules have been released to General Availability.

Cloud SQL - You can save and manage SQL queries in Cloud SQL Studio.

Transcoder API - You can automatically generate subtitle from your input video. You can process videos with significant number of missing frame by using the fill_content_gaps field.

Vertex AI - Vertex AI Agent Engine Agent Engine now supports the following enterprise security features: You can now deploy your agents in a private VPC environment, configuring a Private Service Connect interface, to ensure data privacy and meet security and compliance requirements.

 

Latest Issues




Contact

Zdenko Hrček
Třebanická 183
Prague, Czech Republic
Phone: +420 777 283 075
Email: [email protected]