CoreBreak: Tool Execution Without a Model Turn in Three Runtimes
Four CVEs across AWS, Google, and Vercel agent runtimes converge on one authorization failure: tool execution could proceed with no trustworthy binding to a model-authorized event. Here is what the audit record shows, what the detection actually looks like in CloudWatch and Splunk, and why the Strands branch that started it all is still open.