Two VSCode extensions are harvesting sensitive data and sending it to China.
Marketplace that were collectively installed 1.5 million times, exfiltrate developer data to China-based servers.
Moltbot doesn't have a VSCode extension - you're downloading malware instead ...
Cybersecurity researchers from Socket’s Threat Research team have identified a developer-compromise supply chain attack ...
A new Visual Studio Code extension called Nogic sparked a wide-ranging Hacker News discussion, with commenters praising its graph-based approach to understanding complex codebases while also raising ...
Attackers can abuse VS Code configuration files for RCE when a GitHub Codespaces user opens a repository or pull request.
Open VSX supply chain attack hijacked VS Code extensions delivered GlassWorm malware stealing macOS, crypto, and developer ...
Security researchers are warning of insecure deployments in enterprise environments of the Moltbot (formerly Clawdbot) AI assistant, which can lead to leaking API keys, OAuth tokens, conversation ...
Microsoft released new open‑source quantum development tools that deepen VS Code and Copilot integration while targeting real‑world hybrid quantum workloads in chemistry, optimization, and machine ...
The self-replicating malware has poisoned a fresh set of Open VSX software components, leaving potential downstream victims ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results