logo

How AWS averted an AI coding supply chain disaster

ID: b473f72b-4ccc-58dc-998c-47878f0d17ba

STIX ID: report--b473f72b-4ccc-58dc-998c-47878f0d17ba

Feed Name: ReversingLabs Blog

Threat Score
72/100

Date Published: 2025-08-26

Date Updated: 2026-04-29

Author: John P. Mello Jr.

...
...

AWS discovered that a threat actor extracted an overly permissive GitHub token from a CodeBuild environment and used it to commit malicious code to the open-source Amazon Q Developer VS Code extension; the malicious code was distributed in a release but failed to run due to a syntax error. AWS revoked the compromised credentials, removed the malicious code, released a patched extension, and implemented additional build protections; the report draws lessons about AI-agent fragility, prompt-injection amplification, and the need to treat developer extensions and agents as privileged software.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.