VulnWatch VulnWatch
← Back to dashboard
Unknown rss_thehackernews · rss_ab0fdeb9c644c7e68cb7661a1220aca5

AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run Code

Published Jul 21, 2026

Hidden text on a web page was enough to make Kiro, AWS's agentic coding IDE, rewrite its own configuration file and run an attacker's code on a developer's machine, with no approval step able to stop it.

Intezer, in research with Kodem Security, found that a request as ordinary as asking Kiro to summarize a page could end in remote code execution. AWS has patched the issue and says it is

Affected AI Products

agentic
Get the weekly digest. Every Monday: top AI security stories of the week. Free.