{"data":{"id":"0ede72b3-2b76-4c60-9b7b-00ffc7790650","title":"Amazon Kiro Prompt Injection Can Exfiltrate Sensitive Data Through Kiro Powers","summary":"Amazon Kiro, an AI-powered development environment, has a vulnerability that allows attackers to trick the AI using prompt injection (inserting hidden malicious instructions into input) to steal sensitive data through Kiro Powers (bundles of AI tools and configuration files). The attack requires a user to open a malicious project file and send any message to the AI agent, after which sensitive workspace information can be sent to an attacker's external server without the user's knowledge.","solution":"Following responsible disclosure, a fix for the flaw was implemented by Amazon in Kiro IDE version 0.8.140.","labels":["security"],"sourceUrl":"https://thehackernews.com/2026/08/amazon-kiro-prompt-injection-can.html","publishedAt":"2026-08-27T13:39:56.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection"],"issueType":"news","affectedPackages":null,"affectedVendors":["Amazon"],"affectedVendorsRaw":["Amazon Kiro","Kiro IDE"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-08-27T13:39:56.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"moderate","impactType":["confidentiality","integrity"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}