Security researchers found 150 lookalike Open VSX extensions published under trusted names, highlighting how extension marketplaces can expose developer credentials, source code, and CI/CD systems to supply-chain risk.
The post 77 Counterfeit Open VSX Extensions Collected Developer and CI/CD Data appeared first on TechRepublic.
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | Compromised VS Code Extension Puts Linux Development Pipelines at Risk | 0 | 7 | 03-06-2026 |
| 2 | 77 расширений Open VSX собирали информацию о разработчиках | 0 | 14.99 | 10-08-2026 |
| 3 | New GitHub Zero-Day Exposed Developer Tokens to Attackers | -5 | 7 | 04-06-2026 |
| 4 | Malicious AI Coding Plugins Hit JetBrains Marketplace, Stealing API Keys From Developers | -2 | 8 | 17-06-2026 |
| 5 | Мошенники распространяют вредоносное ПО под видом вакансий маркетплейсов | 0 | 10 | 24-02-2026 |
| 6 | How we took malware advisories beyond npm | 0 | 8.44 | 06-08-2026 |
| 7 | Using LLMs to find Python C-extension bugs | 0 | 24.29 | 26-04-2026 |
| 8 | More Than 45,000 Software Flaws Reported as AI Reshapes Cybersecurity | 0 | 10.32 | 28-07-2026 |
| 9 | Microsoft’s open source tools were hacked to steal passwords of AI developers | -2 | 6 | 08-06-2026 |