AI news

Five minutes. What happened, and what to do about it. All stories from 9 October 2026

HIGHLIGHT

Claude adds live dashboards and animated explainers in beta, and Docs, Slides and Design are now on every plan

Ask a question of your data in plain words and get a dashboard that stays current.

CLAUDE|8 OCT

Researchers hijacked every AI agent in an AWS account with one message to a public agent on Bedrock AgentCore

The Decoder· 8 Oct

Zenity Labs says one chat message to a publicly reachable agent on Amazon Bedrock AgentCore was enough to take over every AgentCore agent in the same AWS account and region. The agent was asked to query an internal metadata address and hand back its own credentials, which it did. With broad default permissions, the researchers could reach source code, passwords, private chats and agent memory. AWS has partly fixed it.

  • If you or your developer runs agents on AWS, give each agent its own role with only the access it needs, rather than relying on the defaults.
  • Do not put a public chat agent in the same account and region as agents that hold customer data, or secrets, until you have checked what it can reach.

Source: The Decoder. This is our short summary of their reporting. The paragraphs marked "Our read" and the things to do are SeedFoundry's opinion. The summary is drafted with AI tools. Image: Amazon Web Services, from its own announcement. How we source and credit

That is fri 9 oct, all of it.

These are short summaries of other people's reporting, with our own commentary. Each story names its source and links to the original. How we source and credit