🚨 A malicious Amazon Kiro workspace can leak sensitive local data.
After opening the workspace, sending any message to the agent can trigger repository-controlled instructions that send local data to an external server. Amazon fixed the flaw in Kiro 0.8.140.
How the flaw works: https://thehackernews.com/2026/08/amazon-kiro-prompt-injection-can.html

4August 27, 2026 6.1K 21