Amazon AI Coding Agent Hacked to Inject Data Wiping Commands
5 Articles
5 Articles
Hacker Added Prompt To Amazon Q To Erase Files And Cloud Data - Cybernoz - Cybersecurity News
A security vulnerability recently surfaced involving Amazon’s AI coding assistant, ‘Q’, integrated with VS Code. The incident, reported by 404 Media, revealed a lapse in Amazon’s security protocols, allowing a hacker to insert malicious commands into a publicly released update. The hacker, using a temporary GitHub account, managed to submit a pull request that granted them administrative access. Within this unauthorised update, destructive instr…
The information was revealed by our American colleague 404 Media on 24 July: a malicious actor managed to insert a potentially destructive command into the Amazon Q development agent, via a simple pull request validated on the GitHub repository of the Visual Studio Code extension. The incident, quickly documented by several cybersecurity analysts, puts in [...] The post Amazon Q trapped by a hacker: alert on the governance of agents IA appeared …
Hackers Inject Destructive Commands into Amazon’s AI Coding Agent
A significant security breach has exposed critical vulnerabilities in Amazon’s artificial intelligence infrastructure, with hackers successfully injecting malicious computer-wiping commands into the tech giant’s popular AI coding assistant. The incident represents a concerning escalation in cyber threats targeting AI-powered development tools and highlights the growing sophistication of attacks against machine learning systems. Security Breach D…
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium