Security researchers have uncovered a class of vulnerabilities in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel that allow attackers…
Agent InfrastructureAI SecurityAmazon Bedrock AgentCoreAmazon Web Services
The open-source Strands Python code, which underpins AWS AgentCore, contains a model-skipping path that remains unpatched. AWS documented the behavior instead of…
AWS patched a critical vulnerability in Amazon Bedrock AgentCore's InvokeHarness API, but the open-source Strands code remains vulnerable. The company documented the…