A malicious Amazon Kiro workspace can leak sensitive local data… — The Hacker News — TG.ME

🚨 A malicious Amazon Kiro workspace can leak sensitive local data.

After opening the workspace, sending any message to the agent can trigger repository-controlled instructions that send local data to an external server. Amazon fixed the flaw in Kiro 0.8.140.

How the flaw works: https://thehackernews.com/2026/08/amazon-kiro-prompt-injection-can.html
😁4
August 27, 2026 6.1K 21