Skip to content
AI IntelligenceOct 9, 2026AI Intelligence
Article

Zenity: single prompt could hijack every AI agent in an AWS account: A single publicly accessible AI agent on Amazon Bedrock...

AgentCore could take over every AgentCore agent in an AWS account and region, Zenity researchers say. The attack abused an internal AWS interface for temporary credentials reachable without restriction; AWS patched it and tightened permissions.

Frontier EditorialSource: The Decoder
01

Source Brief

Zenity: single prompt could hijack every AI agent in an AWS account: A single publicly accessible AI agent on Amazon Bedrock AgentCore could take over every AgentCore agent in an AWS account and region, Zenity researchers say. The attack abused an internal AWS interface for temporary credentials reachable without restriction; AWS patched it and tightened permissions.