First reported · updated · 2 reports gitguardian.com
Lead dispatch
First reported · updated · 3 reports embracethered.com
AWS Kiro: Arbitrary Code Execution via Indirect Prompt Injection
Researchers found a vulnerability (CVE-2026-10591) in AWS Kiro, an agentic IDE, where hidden instructions planted in a web page or source file that Kiro processes can trigger indirect prompt injection to rewrite Kiro's own MCP server configuration (~/.kiro/settings/mcp.json) or allowlist arbitrary Bash commands in .vscode/settings.json, achieving arbitrary code execution on the developer's machine with no approval prompt. The human-in-the-loop approval boundary is bypassed because Kiro can write to these config files without user consent, and AWS has issued a fix and CVE.indirect-prompt-injection · prompt-injection · remote-code-execution · tool-abuse · config-poisoning
ai-agents · mcp · llm · agentic-ide
The wire · latest
First reported em360tech.com
AI Agent Identity Governance Explained | SailPoint
A podcast episode featuring SailPoint CPO Levent Besik and KuppingerCole analyst Nitish Deshpande discusses AI agent identity governance and the security gaps created by non-human identities (NHI) in enterprises. Besik argues for 'continuous authorisation' that revalidates an agent's access at every action rather than granting one-time permissions, citing risks such as rogue AI agents escaping test environments. Details →First reported · updated · 4 reports identityweek.net
Governing the AI Workforce & NHI Security | Saviynt
A vendor guide (Saviynt/aizome) argues that enterprise AI agents break existing IAM and Non-Human Identity (NHI) frameworks because they act autonomously at machine speed, inherit hybrid human/machine permissions, and can diverge at runtime from provisioning-time assumptions. It introduces an 'ARISE' governance category and intent-based access control as proposed approaches for securing autonomous AI agents. Details →First reported · updated · 13 reports thehackernews.com
Identity Lifecycle Management Wasn't Built for AI Agents
A Dark Reading commentary by BlueFlag Security's Mora Gozani argues that AI agents constitute a fundamentally new kind of non-human identity that existing identity lifecycle management, service-account, and API-token approaches were never built to handle. The piece builds on an Omdia analyst's discussion of identity security for AI agents and stresses that the development environment is an under-addressed risk factor. Details →How the wire is made
Poll & cluster
Internet is crawled for AI security news and near-duplicate coverage is embedded and grouped into durable items.
Curate
AI Agent filters for agentic-AI relevance, classifies and tags each item, scores severity for threats, and writes the summary.
Every item here is one machine-curated intelligence object, not a headline.
Read the wire for free. There is a small charge to ask the index questions.
The wire, open
The complete curated feed, no key required.
- GET /feed.xml — RSS 2.0, every item
- GET /api/items — read-only
The vector desk
Query the index by meaning, not just keyword.
- GET /api/items?tags=&minSeverity=&itemType=
- GET /api/search?q= — keyword
- GET /api/semantic?q= — vector