ThreatsDay: Malicious VS Code themes, npm supply-chain attacks, AI phishing, ransomware betrayal, exposed hacker tools, and ...
GlassWorm hides malware in VS Code theme extensions, targeting developers through Visual Studio Marketplace and Open VSX.
Researchers escaped OpenAI's Codex sandbox two ways, one running commands on a developer's machine from its most locked-down mode. OpenAI has patched both.
A serious VS Code flaw lets attackers gain persistent workstation access with one click in a malicious project, bypassing Workspace Trust via clickable editor links.
一些您可能无法访问的结果已被隐去。
显示无法访问的结果