A single config file in a cloned repository could steal your AWS credentials through Amazon Q Developer
26-06-2026 18:49 via thenextweb.com

A single config file in a cloned repository could steal your AWS credentials through Amazon Q Developer

A high-severity flaw in Amazon Q Developer allowed a malicious code repository to silently execute commands on a developer’s machine and steal their AWS credentials. Wiz Research discovered the vulnerability, tracked as CVE-2026-12957, and reported it to Amazon on April 20. Amazon patched the issue on May 12, and the disclosure went public today. The […]
This story continues at The Next Web
Read more »

Apps & Smartphones news



TikTok is building a super app, and most of its users have not noticed yet
TikTok is building a super app, and most of its users have not noticed yet
Xprize founder says global surveillance is a good thing because humans behave better when they are being watched
Xprize founder says global surveillance is a good thing because humans behave better when they are being watched
Apple skips its high-end M6 chips for an AI-first M7
Apple skips its high-end M6 chips for an AI-first M7
Aseon Labs raises ten million dollars to build parking-space-sized pods that charge and clean robotaxis
Aseon Labs raises ten million dollars to build parking-space-sized pods that charge and clean robotaxis
onsemi to buy Synaptics in $7bn bet on ‘physical AI’
onsemi to buy Synaptics in $7bn bet on ‘physical AI’
Volkswagen reportedly plans to cut 100,000 jobs
Volkswagen reportedly plans to cut 100,000 jobs
California built a tool to catch AI killing jobs
California built a tool to catch AI killing jobs
OpenAI told Cannes it is “clearly in the advertising business now.” The numbers say it is barely in the door.
OpenAI told Cannes it is “clearly in the advertising business now.” The numbers say it is barely in the door.
Patronus AI raises $50M to stress-test AI agents
Patronus AI raises $50M to stress-test AI agents
Malaysia intercepts $13M AI chip shipment bound for re-export
Malaysia intercepts $13M AI chip shipment bound for re-export
Zalando plunges after German regulator opens accounting review
Zalando plunges after German regulator opens accounting review
France’s statistics department hit by cyberattack on staff directory
France’s statistics department hit by cyberattack on staff directory
Swatch wants $170m from Samsung over copied watch faces
Swatch wants $170m from Samsung over copied watch faces
Kobo rejected 45% of self-published books last year, mostly over AI
Kobo rejected 45% of self-published books last year, mostly over AI
Desktop versie