X

Vous n'êtes pas connecté

Maroc Maroc - BLEEPINGCOMPUTER.COM - A La Une - 05/Jan 16:41

VSCode IDE forks expose users to "recommended extension" attacks

Popular AI-powered integrated development environment solutions, such as Cursor, Windsurf, Google Antigravity, and Trae, recommend extensions that are non-existent in the OpenVSX registry, allowing threat actors to claim the namespace and upload malicious extensions. [...]

Articles similaires

Sorry! Image not available at this time

VSCode IDE forks expose users to "recommended extension" attacks

bleepingcomputer.com - 05/Jan 16:41

Popular AI-powered integrated development environment solutions, such as Cursor, Windsurf, Google Antigravity, and Trae, recommend extensions that are...

Sorry! Image not available at this time

New GlassWorm malware wave targets Macs with trojanized crypto wallets

bleepingcomputer.com - 01/Jan 15:18

A fourth wave of the "GlassWorm" campaign is targeting macOS developers with malicious VSCode/OpenVSX extensions that deliver trojanized versions of...

Sorry! Image not available at this time

GlassWorm Malware Returns with MacOS-focused Attack via VS Code Extensions

itsecuritynews.info - 03/Jan 18:02

  A fourth wave of the GlassWorm malware campaign is targeting macOS developers through malicious extensions distributed on the OpenVSX registry and...

Sorry! Image not available at this time

Chinese-linked Browser Extensions Linked to Corporate Espionage Hit Millions of Users

itsecuritynews.info - 01/Jan 17:31

  A Chinese-linked threat actor has been tied to a third large-scale malicious browser extension campaign that has compromised data from millions of...

Sorry! Image not available at this time

Chinese-linked Browser Extensions Linked to Corporate Espionage Hit Millions of Users

itsecuritynews.info - 01/Jan 17:31

  A Chinese-linked threat actor has been tied to a third large-scale malicious browser extension campaign that has compromised data from millions of...

Sorry! Image not available at this time

Keeper Security Launches JetBrains Extension

itsecuritynews.info - 09/Jan 18:04

This week, Keeper Security the launch of its JetBrains extension, offering JetBrains Integrated Development Environment (IDE) users a secure and...

Sorry! Image not available at this time

Beyond Extensions: Architectural Deep-Dives into File Upload Security

itsecuritynews.info - 09/Jan 18:05

Allowing users to upload files is a staple of modern web applications, from profile pictures to enterprise document management. However, for a...

Sorry! Image not available at this time

FBI Warns North Korean Hackers Using Malicious QR Codes in Spear-Phishing

itsecuritynews.info - 09/Jan 07:04

The U.S. Federal Bureau of Investigation (FBI) on Thursday released an advisory warning of North Korean state-sponsored threat actors leveraging...

Sorry! Image not available at this time

FBI Warns North Korean Hackers Using Malicious QR Codes in Spear-Phishing

itsecuritynews.info - 09/Jan 07:04

The U.S. Federal Bureau of Investigation (FBI) on Thursday released an advisory warning of North Korean state-sponsored threat actors leveraging...

Sorry! Image not available at this time

Malicious Chrome Extension Steal ChatGPT and DeepSeek Conversations from 900K Users

itsecuritynews.info - 07/Jan 03:31

Two rogue Chrome extensions have compromised over 900,000 users by secretly exfiltrating ChatGPT and DeepSeek conversations, along with full browsing...