Unit 42 researchers red-teamed Amazon Bedrock's multi-agent collaboration feature, demonstrating a four-stage attack chain: detecting operating mode (Supervisor vs. Supervisor with Routing), discovering collaborator agents, delivering attacker-controlled payloads, and exploiting target agents. Successful attacks included

16m read timeFrom unit42.paloaltonetworks.com
Post cover image
Table of contents
Executive SummaryIntroduction to Bedrock Agents Multi-Agent CollaborationRed-Teaming Multi-Agent ApplicationGeneral Defenses and MitigationsConclusionAdditional ResourcesAdditional Resources

Sort: