AWS AgentCore security undone by prompt requesting credentials
A prompt requesting credentials can undo AWS AgentCore’s security, The Register reports. Tokens transmitted in metadata, weak VM isolation, and expansive permissions make hacking the AI agent platform a lot easier.