Image missing.
Hacker slips malicious 'wiping' command into Amazon's Q AI coding assistant

CrankyBear

created: July 24, 2025, 8:20 p.m. | updated: July 24, 2025, 10:41 p.m.

Amazon / Elyse Betters Picaro / ZDNETA while back, my ZDNET colleague David Gewirtz worried that someday AI coding agents could destroy open-source software. A hacker managed to plant destructive wiping commands into Amazon's "Q" AI coding agent. It started when a hacker successfully compromised a version of Amazon's widely used AI coding assistant, 'Q.' He did it by submitting a pull request to the Amazon Q GitHub repository. As Eric S. Raymond, one of the people behind open source, said in Linus's Law, "Given enough eyeballs, all bugs are shallow."

1 week, 3 days ago: Hacker News: Front Page