Information security
fromThe Hacker News
3 days agoVS Code Forks Recommend Missing Extensions, Creating Supply Chain Risk in Open VSX
AI-powered VS Code forks recommend non-existent Open VSX extensions, enabling attackers to register those namespaces and publish malicious packages that compromise developers.