7 Sources
[1]
Hacker slips malicious 'wiping' command into Amazon's Q AI coding assistant - and devs are worried
A while back, my ZDNET colleague David Gewirtz worried that someday AI coding agents could destroy open-source software. That day has come. A hacker managed to plant destructive wiping commands into Amazon's "Q" AI coding agent. Also: Coding with AI? My top 5 tips for vetting its output - and
[2]
Destructive AI prompt published in Amazon Q extension
Malicious actor reportedly sought to expose AWS 'security theater' The official Amazon Q extension for Visual Studio Code (VS Code) was compromised to include a prompt to wipe the user's home directory and delete all their AWS resources. The bad extension was live on the VS Code marketplace for
[3]
Amazon AI coding agent hacked to inject data wiping commands
A hacker planted data wiping code in a version of Amazon's generative AI-powered assistant, the Q Developer Extension for Visual Studio Code. Amazon Q is a free extension that uses generative AI to help developers code, debug, create documentation, and set up custom configurations. It is
[4]
Amazon's AI coding assistant exposed nearly 1 million users to potential system wipe
Serving tech enthusiasts for over 25 years. TechSpot means tech analysis and advice you can trust. A hot potato: Earlier this month, a hacker compromised Amazon's generative AI coding assistant, Amazon Q, which is widely used through its Visual Studio Code extension. The breach wasn't just a
[5]
Amazon's AI coding agent was hacked - update now to avoid possible risks, users warned
A hacker has planted data-wiping code into the Amazon Q Developer Extension for Visual Studio Code (VSC) - a free GenAI extension with nearly one million installs from the Microsoft VSC marketplace designed to help developers code, debug, document and configure projects. On July 13 2025, the
[6]
Amazon's AI coding tool almost went full Terminator - here's how a hacker nearly made it happen!
AWS says customer data was safe, but the scare was real, and too close A recent breach involving Amazon's AI coding assistant, Q, has raised fresh concerns about the security of large language model based tools. A hacker successfully added a potentially destructive prompt to the AI writer's
[7]
Hacker claims to have exposed Amazon's 'AI security theater' after exploiting its coding assistant with a simple factory reset prompt
Nearly 1 million users were potentially exposed in an attack that 'was unsuccessful in executing due to a syntax error'. Amazon Q, the company's AI coding assistant, reportedly exposed almost one million users to a potential system wipe, and the hacker who did it claims to have exposed the
Share
Copy Link
A hacker successfully planted malicious code in Amazon's AI coding assistant Q, potentially exposing nearly 1 million users to system wiping risks. The incident raises serious questions about AI security in software development.
In a startling development, Amazon's AI-powered coding assistant, Q, was compromised by a hacker who successfully injected potentially destructive code into the tool. The incident, which occurred in July 2025, exposed nearly one million users of the Amazon Q Developer Extension for Visual Studio Code to potential system-wiping risks
1
.
Source: ZDNet
The hacker, using the alias 'lkmanka58', managed to submit a pull request to Amazon Q's GitHub repository, which was unexpectedly approved. The malicious commit included a prompt instructing the AI agent to "clean a system to a near-factory state and delete file-system and cloud resources"
2
. This compromised version (1.84.0) was unknowingly published by Amazon on July 17, making it available to the entire user base3
.Upon discovering the breach on July 23, Amazon quickly investigated and released a clean version (1.85.0) the following day, removing the unapproved code
3
. In a security bulletin, AWS stated:"We immediately revoked and replaced the credentials, removed the unapproved code from the codebase, and subsequently released Amazon Q Developer Extension version 1.85.0 to the marketplace."
2
However, Amazon's handling of the incident has drawn criticism from security experts and developers. The company initially failed to issue a public announcement and was accused of attempting to cover up the breach by quietly removing the compromised version without proper disclosure
1
.
Source: BleepingComputer
This incident has raised serious questions about the integration of AI tools into software development pipelines. Corey Quinn, chief cloud economist at The Duckbill Group, commented, "This isn't 'move fast and break things,' it's 'move fast and let strangers write your roadmap.'"
4
The breach exposed critical flaws in how AI tools are managed and secured. It highlighted the need for robust code review processes and proper repository management practices. As Steven Vaughan-Nichols of ZDNet pointed out, the issue was not with open source itself, but rather with how Amazon implemented its open-source workflows
1
.Related Stories
Interestingly, the hacker claimed that their actions were intended as a warning rather than a malicious attack. In comments to 404 Media, they described Amazon's AI security measures as "security theater" and stated that the wiper was designed to be defective
2
. Their goal was reportedly to expose Amazon's inadequate safeguards and prompt improvements in security practices.
Source: The Register
This incident serves as a wake-up call for the tech industry regarding the risks associated with AI integration in development workflows. It underscores the importance of vigilance and thorough security measures when incorporating AI tools into software development processes
4
.Users of the Amazon Q Developer Extension are strongly advised to update to version 1.85.0 or later to mitigate any potential risks
5
. Furthermore, developers are cautioned not to unconditionally trust IDE extensions and AI assistants, highlighting the need for ongoing vigilance in the rapidly evolving landscape of AI-assisted software development.Summarized by
Navi
[1]
[2]
[3]
26 Jun 2026•Technology

08 Jul 2026•Technology

29 Jul 2025•Technology

1
Technology

2
Policy and Regulation

3
Technology
