Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Amazon Kiro Vulnerability Risks Data Exposure

Amazon Kiro Vulnerability Risks Data Exposure

Posted on August 27, 2026 By CWS

Cybersecurity experts have uncovered a critical vulnerability in Amazon Kiro, an AI-driven integrated development environment (IDE). This flaw, identified by Mindguard, enables data leaks through prompt injection and Kiro Powers, posing significant security concerns.

Kiro Vulnerability Details

The security gap affects Kiro IDE version 0.7.45 on Windows, with the current version being 1.0.337. The flaw allows external influence over the Kiro agent by manipulating repository content, leading to unauthorized transmission of sensitive data, as reported by Fergal Glynn to The Hacker News.

Kiro Powers, which include Model Context Protocol (MCP) configurations and steering files, play a crucial role in this vulnerability. The steering file acts as a guide, informing the AI agent about available tools and their usage, which attackers can exploit.

Exploitation Mechanism

The vulnerability requires users to load a malicious project via a workspace file and send a message to the agent, enabling data exfiltration without explicit permission. This process can affect both trusted and untrusted workspaces, with low difficulty for exploitation.

The flaw is particularly concerning as it does not require any malicious prompt from the user. Opening a crafted workspace file and sending any message is sufficient to trigger the vulnerability, leading to data leaks.

Broader Implications and Mitigation

This vulnerability highlights a broader issue in AI development environments where models interpret and execute tasks based on repository files, potentially causing trust boundary failures. Amazon addressed this flaw with a fix in Kiro IDE version 0.8.140, following responsible disclosure.

Mindguard previously identified similar vulnerabilities in Kiro, including one that allowed steering-file directives to send local data to external servers through Markdown image requests. These revelations come amidst a series of security challenges in AI tools across various platforms.

Recent vulnerabilities in tools like OpenAI Codex CLI and Microsoft Visual Studio Code showcase the extensive scope of these security risks. These issues emphasize the complexity of AI vulnerabilities, which arise from interactions between model interpretation, application logic, and external resources.

As AI systems evolve, it is crucial for vulnerability disclosure programs to consider these multifaceted execution paths. Understanding these interactions can help mitigate risks and enhance the security of AI-driven environments.

The Hacker News Tags:AI tools, Amazon Kiro, Cybersecurity, data security, IDE, Kiro Powers, Mindguard, prompt injection, steering files, Vulnerability

Post navigation

Previous Post: Hackers Use AI Systems for Cyber Attacks and Cryptocurrency Mining
Next Post: Executive Order to Secure US Power Grid from Foreign Threats

Related Posts

New .NET CAPI Backdoor Targets Russian Auto and E-Commerce Firms via Phishing ZIPs New .NET CAPI Backdoor Targets Russian Auto and E-Commerce Firms via Phishing ZIPs The Hacker News
Google Mandiant Probes New Oracle Extortion Wave Possibly Linked to Cl0p Ransomware Google Mandiant Probes New Oracle Extortion Wave Possibly Linked to Cl0p Ransomware The Hacker News
Learn a Smarter Way to Defend Modern Applications Learn a Smarter Way to Defend Modern Applications The Hacker News
CISA Warns of Active Exploitation of Linux Kernel Privilege Escalation Vulnerability CISA Warns of Active Exploitation of Linux Kernel Privilege Escalation Vulnerability The Hacker News
Unpatchable usbliter8 Exploit Affects Apple Devices Unpatchable usbliter8 Exploit Affects Apple Devices The Hacker News
Tomiris Shifts to Public-Service Implants for Stealthier C2 in Attacks on Government Targets Tomiris Shifts to Public-Service Implants for Stealthier C2 in Attacks on Government Targets The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Australian Duo Arrested for Massive TeamPCP Cyber Attacks
  • Executive Order to Secure US Power Grid from Foreign Threats
  • Amazon Kiro Vulnerability Risks Data Exposure
  • Hackers Use AI Systems for Cyber Attacks and Cryptocurrency Mining
  • Okta’s Earnings Jump as AI Security Demand Grows

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Australian Duo Arrested for Massive TeamPCP Cyber Attacks
  • Executive Order to Secure US Power Grid from Foreign Threats
  • Amazon Kiro Vulnerability Risks Data Exposure
  • Hackers Use AI Systems for Cyber Attacks and Cryptocurrency Mining
  • Okta’s Earnings Jump as AI Security Demand Grows

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark