Close Menu
TechUpdateAlert

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    AT&T Subscribers Just Got a Significant 5G Speed Boost Due to New Spectrum

    November 17, 2025

    Is 2025 the year that used hardware goes mainstream?

    November 17, 2025

    Detailed Samsung Galaxy Buds 4 leak shows off refined design, head gestures

    November 17, 2025
    Facebook X (Twitter) Instagram
    Trending
    • AT&T Subscribers Just Got a Significant 5G Speed Boost Due to New Spectrum
    • Is 2025 the year that used hardware goes mainstream?
    • Detailed Samsung Galaxy Buds 4 leak shows off refined design, head gestures
    • 11 Best Dry Shampoos for All Types of Hair (2025)
    • You Bought Eggs for Thanksgiving Weeks Ago. Are They Still Safe? We Asked an Expert.
    • 12 Best Tech Gifts That They’d Actually Want (2025)
    • The sequel to one of my favorite 3D platformers always had a janky PC port, but a huge fanmade patch just dropped in hopes to fix it
    • A Doctor at Apple Shares 9 Hidden Apple Watch Features for Your Health
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechUpdateAlertTechUpdateAlert
    • Home
    • Gaming
    • Laptops
    • Mobile
    • Software
    • Reviews
    • AI & Tech
    • Gadgets
    • How-To
    TechUpdateAlert
    Home»Software»Amazon’s AI coding agent was hacked – update now to avoid possible risks, users warned
    Software

    Amazon’s AI coding agent was hacked – update now to avoid possible risks, users warned

    techupdateadminBy techupdateadminJuly 29, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Android developer at work
    Share
    Facebook Twitter LinkedIn Pinterest Email


    • Experts claim Amazon Q Developer Extension for VSC v1.84.0 had some dodgy code
    • This has now been removed, with version 1.85.0 offering a clean fix
    • Around 5.6% of VSC extensions have been compromised

    A hacker has planted data-wiping code into the Amazon Q Developer Extension for Visual Studio Code (VSC) – a free GenAI extension with nearly one million installs from the Microsoft VSC marketplace designed to help developers code, debug, document and configure projects.

    On July 13 2025, the malicious commit from ‘lkmanka58’ on GitHub included a prompt to delete system and cloud resources, with Amazon unknowingly publishing the compromised version (1.84.0) on July 17.

    With suspicious activity noted on July 23 and Amazon developers quickly springing into action, a clean version was released on July 24 without the malicious code, so users are being advised to update to 1.85.0 as a matter of urgency.


    You may like

    Amazon missed some malicious code in its Q Developer Extension

    Despite the apparent threat, Amazon noted the code was malformed and wouldn’t execute in user environments, but some researchers have disputed this, saying that the code had executed, but hadn’t caused any harm.

    Regardless, version 1.84.0 has been removed altogether from distribution channels.

    Still, users have expressed concerns that such a potentially dangerous snippet of code could have been missed by Amazon, taking to online communities like Reddit to criticize Amazon for silently editing the git history and being slow to disclose the mistake.

    Amazon’s incident isn’t unique, though, with a 2024 academic survey of nearly 53,000 VS Code extensions revealing around 5.6% have suspicious elements like arbitrary network calls, privilege abuse or obfuscated code.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    Ultimately, developers are being advised not to unconditionally trust IDE extensions and AI assistants, however many have been left disappointed that Amazon let this one slip through the net.

    Via BleepingComputer

    You might also like

    agent Amazons Avoid coding hacked Risks Update users warned
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleAMD’s 96-core Threadripper 9995WX just crushed every CPU benchmark and even embarrassed its EPYC big brother!
    Next Article I bought this ultralight laptop, and it’s $400 off
    techupdateadmin
    • Website

    Related Posts

    Software

    The Ninja DoubleStack XXXL air fryer for just AU$259 is too delicious a Black Friday deal to ignore

    November 17, 2025
    Software

    Sky Sports killed off its female-focused Halo brand after just three days

    November 17, 2025
    Software

    Best Dyson Black Friday 2025 deals in Australia: save on vacuums, hair tools, purifiers and more

    November 17, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    NYT Strands hints and answers for Monday, August 11 (game #526)

    August 11, 202531 Views

    These 2 Cities Are Pushing Back on Data Centers. Here’s What They’re Worried About

    September 13, 202529 Views

    I’m obsessed with Windows 11’s secret God mode

    September 11, 202528 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Best Fitbit fitness trackers and watches in 2025

    July 9, 20250 Views

    There are still 200+ Prime Day 2025 deals you can get

    July 9, 20250 Views

    The best earbuds we’ve tested for 2025

    July 9, 20250 Views
    Our Picks

    AT&T Subscribers Just Got a Significant 5G Speed Boost Due to New Spectrum

    November 17, 2025

    Is 2025 the year that used hardware goes mainstream?

    November 17, 2025

    Detailed Samsung Galaxy Buds 4 leak shows off refined design, head gestures

    November 17, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2025 techupdatealert. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.