#vs-code-extensions

[ follow ]
Software development
fromTheregister
1 week ago

AWS backs Open VSX as Rust survey shows VS Code decline

Open VSX registry, operated by Eclipse Foundation, will migrate to AWS infrastructure in Europe with support from AWS and Cursor sponsorship, ensuring sustainability for VS Code-compatible extensions.
Software development
fromDevOps.com
1 week ago

Eclipse Foundation Extends Scope and Reach of Open VSX Registry - DevOps.com

The Eclipse Foundation created a security framework for Open VSX Registry to detect malicious patterns, prevent impersonation, and quarantine suspicious extensions while transitioning to a hybrid multi-region architecture.
fromThe Hacker News
2 weeks ago

Critical Flaws Found in Four VS Code Extensions with Over 125 Million Installs

CVE-2025-65717 (CVSS score: 9.1) - A vulnerability in Live Server that allows attackers to exfiltrate local files, tricking a developer into visiting a malicious website when the extension is running, causing JavaScript embedded in the page to crawl and extract files from the local development HTTP server that runs at localhost:5500, and transmit them to a domain under their control. (Remains unpatched)
Information security
Information security
fromTechzine Global
2 weeks ago

Vulnerable VS Code extensions affect tens of millions of developers

Three vulnerabilities in popular VS Code extensions enable lateral movement and OS-level compromise, risking sensitive local credentials, data, and entire development environments.
Information security
fromThe Hacker News
1 month ago

Eclipse Foundation Mandates Pre-Publish Security Checks for Open VSX Extensions

The Eclipse Foundation will require pre-publish security checks on Open VSX Registry VS Code extensions to proactively prevent malicious or compromised extensions.
fromThe Hacker News
1 month ago

Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code

Koi Security said the extensions are functional and work as expected, but they also capture every file being opened and every source code modification to servers located in China without users' knowledge or consent. The campaign has been codenamed MaliciousCorgi. "Both contain identical malicious code -- the same spyware infrastructure running under different publisher names," security researcher Tuval Admoni said.
Information security
fromThe Hacker News
1 month ago

Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto

The executable, for its part, decrypts and injects the main stealer payload into a legitimate Windows process ("grpconv.exe") directly in memory, allowing it to harvest sensitive data and exfiltrate it to a remote server ("server09.mentality[.]cloud") over FTP in the form of a ZIP file. Some of the information collected by the malware includes - Clipboard content Installed apps Cryptocurrency wallets Running processes Desktop screenshots
Information security
#glassworm
fromInfoWorld
3 months ago
Information security

How GlassWorm wormed its way back into developers' code - and what it says about open source security

fromInfoWorld
3 months ago
Information security

How GlassWorm wormed its way back into developers' code - and what it says about open source security

Information security
fromInfoWorld
4 months ago

Self-propagating worm found in marketplaces for Visual Studio Code extensions

GlassWorm infects VS Code and OpenVSX extensions, harvesting developer credentials, deploying proxies and backdoors, draining crypto wallets, and spreading rapidly.
fromThe Hacker News
4 months ago

Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks

"A leaked VSCode Marketplace or Open VSX PAT [personal access token] allows an attacker to directly distribute a malicious extension update across the entire install base," Wiz security researcher Rami McCarthy said in a report shared with The Hacker News. "An attacker who discovered this issue would have been able to directly distribute malware to the cumulative 150,000 install base."
Information security
[ Load more ]