A published VS Code extension didn't hide the fact that it encrypts and exfiltrates data and also failed to remove obvious signs it was AI-generated.
GlassWorm, a self-propagating VS Code malware first found in the Open VSX marketplace, continues to infect developer devices ...
A malicious extension was published on Microsoft’s official VS Code marketplace, and was able to remain there for some time ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results