A hacker successfully injected malicious code into Amazon’s AI-powered “Q” extension for Visual Studio Code, installed nearly a million times. Although the data-wiping payload was misconfigured and didn’t execute, this breach exposes critical weaknesses in how trusted AI coding agents are distributed and secured. We break down what happened, how close we came to disaster, and why this is a wake-up call for every developer and security professional using AI tooling.
#amazon #ai #code
#amazon #ai #code
- Catégories
- Intelligence Artificielle
- Mots-clés
- amazon ai agent, ai coding assistant, ai hacked
Commentaires