Threat actors continue to probe Visual Studio Code's extension ecosystem, and a late November incident shows how quickly a trusted developer tool can be turned into a supply chain beachhead. In a ...
Marketplace that were collectively installed 1.5 million times, exfiltrate developer data to China-based servers.