'AgentCorruption' Flaw in AWS Bedrock AgentCore Let One Prompt Put a Whole AI Agent Fleet at Risk
Researchers have reported a vulnerability in AWS Bedrock AgentCore, nicknamed 'AgentCorruption', that could have let an attacker use one AI chatbot to take over an organisation's entire fleet of AI agents. The issue has been patched.
The finding is a reminder that AI agents are becoming part of the cloud environments businesses rely on, and that a weakness in one agent can spread to others. The summary available to us does not include technical details, so we cannot say how the flaw worked or whether it was exploited in the wild.
Businesses using AWS Bedrock AgentCore should check AWS's guidance and confirm they are running the patched service.