Researchers have discovered a critical vulnerability in Amazon Kiro, specifically affecting version 0.7.45 on Windows. This flaw allows malicious workspaces to exfiltrate local files through prompt injection attacks, potentially leading to data exfiltration. The issue has been addressed in version 0.8.140 of Kiro. AI
IMPACT This vulnerability highlights the risks of prompt injection in AI-powered tools, potentially impacting user trust and data security.
RANK_REASON Disclosure of a specific vulnerability and its fix in a software product.
Read on Mastodon — mastodon.social →
AI-generated summary · Google Gemini · from 2 sources. How we write summaries →