Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Amazon Kiro Vulnerability Risks Data Exposure

Amazon Kiro Vulnerability Risks Data Exposure

Posted on August 27, 2026 By CWS

Cybersecurity experts have uncovered a critical vulnerability in Amazon Kiro, an AI-driven integrated development environment (IDE). This flaw, identified by Mindguard, enables data leaks through prompt injection and Kiro Powers, posing significant security concerns.

Kiro Vulnerability Details

The security gap affects Kiro IDE version 0.7.45 on Windows, with the current version being 1.0.337. The flaw allows external influence over the Kiro agent by manipulating repository content, leading to unauthorized transmission of sensitive data, as reported by Fergal Glynn to The Hacker News.

Kiro Powers, which include Model Context Protocol (MCP) configurations and steering files, play a crucial role in this vulnerability. The steering file acts as a guide, informing the AI agent about available tools and their usage, which attackers can exploit.

Exploitation Mechanism

The vulnerability requires users to load a malicious project via a workspace file and send a message to the agent, enabling data exfiltration without explicit permission. This process can affect both trusted and untrusted workspaces, with low difficulty for exploitation.

The flaw is particularly concerning as it does not require any malicious prompt from the user. Opening a crafted workspace file and sending any message is sufficient to trigger the vulnerability, leading to data leaks.

Broader Implications and Mitigation

This vulnerability highlights a broader issue in AI development environments where models interpret and execute tasks based on repository files, potentially causing trust boundary failures. Amazon addressed this flaw with a fix in Kiro IDE version 0.8.140, following responsible disclosure.

Mindguard previously identified similar vulnerabilities in Kiro, including one that allowed steering-file directives to send local data to external servers through Markdown image requests. These revelations come amidst a series of security challenges in AI tools across various platforms.

Recent vulnerabilities in tools like OpenAI Codex CLI and Microsoft Visual Studio Code showcase the extensive scope of these security risks. These issues emphasize the complexity of AI vulnerabilities, which arise from interactions between model interpretation, application logic, and external resources.

As AI systems evolve, it is crucial for vulnerability disclosure programs to consider these multifaceted execution paths. Understanding these interactions can help mitigate risks and enhance the security of AI-driven environments.

The Hacker News Tags:AI tools, Amazon Kiro, Cybersecurity, data security, IDE, Kiro Powers, Mindguard, prompt injection, steering files, Vulnerability

Post navigation

Previous Post: Hackers Use AI Systems for Cyber Attacks and Cryptocurrency Mining
Next Post: Executive Order to Secure US Power Grid from Foreign Threats

Related Posts

Unveiling Cyber Deception: Lessons from Art Forgery Unveiling Cyber Deception: Lessons from Art Forgery The Hacker News
CISA Adds Gladinet and CWP Flaws to KEV Catalog Amid Active Exploitation Evidence CISA Adds Gladinet and CWP Flaws to KEV Catalog Amid Active Exploitation Evidence The Hacker News
Rethinking Security for Scattered Spider Rethinking Security for Scattered Spider The Hacker News
Your First and Last Line of Defense Your First and Last Line of Defense The Hacker News
SolarWinds WHD Exploited in Complex Multi-Stage Cyber Attacks SolarWinds WHD Exploited in Complex Multi-Stage Cyber Attacks The Hacker News
TrueConf Server Vulnerabilities Exploited by Cybercriminals TrueConf Server Vulnerabilities Exploited by Cybercriminals The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • CenterPoint Energy Reports Customer Data Breach Incident
  • Hackuity Secures $19M to Boost AI Vulnerability Management
  • Browser Extension Risks AI Assistant Security
  • Urgent Patch for Major Check Point Vulnerability Released
  • Google Fixes Pixel Zero-Day Vulnerability Amid Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • CenterPoint Energy Reports Customer Data Breach Incident
  • Hackuity Secures $19M to Boost AI Vulnerability Management
  • Browser Extension Risks AI Assistant Security
  • Urgent Patch for Major Check Point Vulnerability Released
  • Google Fixes Pixel Zero-Day Vulnerability Amid Attacks

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark