Amazon Kiro IDE Data Exfiltration via Filename Prompt Injection and Kiro Powers Registry Fetching

Affected Vendor(s)

Affected Product(s)

Summary

Timeline

11th December 2025 Identified flaws
11th December 2025 Reported to vendor

Credit

Blog Post

References

Learn how Mindgard can help you navigate AI Security

Take the first step towards securing your AI. Book a demo now and we'll reach out to you.