CYBER● ELEVATED5d ago · Aug 27, 2026, 1:39 PM
Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers
The Hacker News
Cybersecurity researchers have disclosed details of a vulnerability in Amazon Kiro, an artificial intelligence (AI)-powered, agentic integrated development environment (IDE), that could facilitate data exfiltration via prompt injection and Kiro Powers. The security flaw, which does not have a CVE identifier, works against Kiro IDE 0.7.45 on Windows, according to Mindgard. The latest version of
GlobeAlert aggregates and classifies open sources; the story above belongs to its publisher. Summaries are machine-generated from the source text.
More in Cyber
CYBERnow[Virtual Event] What Every Enterprise Should Know About Securing Cloud Assets in the Age of AIDark ReadingCYBERnow[Virtual Event] Building a Secure AI Strategy for the EnterpriseDark ReadingCYBER39m agoResearchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to AnotherThe Hacker NewsCYBER1h agoAttackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without CredentialsThe Hacker News