AI agent flaws in AWS, Google, and Vercel let forged tool calls reach tools without model authorization, while several paths ...
AI agent tool bypass vulnerability CoreBreak exposed production agent infrastructure at AWS, Google, and Vercel, where attackers could invoke tools without any model turn. AWS fixed its managed ...
At Black Hat, Zenity announced new research detailing an active credential-stealing malicious skills campaign distributed through Vercel’s skills.sh.