Monday, January 9, 2023

Hackers Can Abuse Visual Studio Marketplace to Target Developers with Malicious Extensions

A new attack vector targeting the Visual Studio Code extensions marketplace could be leveraged to upload rogue extensions masquerading as their legitimate counterparts with the goal of mounting supply chain attacks. The technique "could act as an entry point for an attack on many organizations," Aqua security researcher Ilay Goldman said in a report published last week. VS Code extensions,
http://dlvr.it/Sgb8F5

No comments:

Post a Comment

NFPs “inherently vulnerable” to cyber security attacks - Pro Bono Australia

NFPs “inherently vulnerable” to cyber security attacks  Pro Bono Australia http://dlvr.it/Sj0J6h