A suspicious Visual Studio Code extension with file-encrypting and data-stealing behavior successfully bypassed marketplace ...
The GlassWorm malware campaign, which impacted the OpenVSX and Visual Studio Code marketplaces last month, has returned with ...
A published VS Code extension didn't hide the fact that it encrypts and exfiltrates data and also failed to remove obvious signs it was AI-generated.
Researchers say the malware was in the repository for two weeks, advise precautions to defend against malicious packages.
Besides its lightweight design and compatibility with all major operating systems, a massive collection of extensions is one ...