logo

Security Flaw in AWS Bedrock Code Interpreter Raises Alarms

ID: 11be0dcc-e0ca-5254-b0db-1048037213cc

STIX ID: report--11be0dcc-e0ca-5254-b0db-1048037213cc

Feed Name: Infosecurity Magazine (News)

Threat Score
70/100

Date Published: 2026-03-16

Date Updated: 2026-04-22

...
...

Researchers demonstrated a DNS-based exfiltration technique against AWS Bedrock AgentCore Code Interpreter Sandbox Mode in which malicious CSVs influence generated code to create a covert C2 channel over DNS, enabling command execution and extraction of S3 data and credentials; AWS marked DNS resolution as intended behavior and advises using VPC mode and tighter IAM controls for sensitive workloads.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.