Dangerous new malware targets macOS devices via OpenVSX extensions – here’s how to stay safe



  • GlassWorm malware campaign expanded from VS Code Marketplace to Open VSX
  • Four compromised extensions delivered macOS infostealer stealing browser data, wallets, and keychain info
  • Extensions downloaded 22,000 times; attackers excluded Russian systems, hinting at Russian origin

GlassWorm, the malware campaign which targeted VS Code developers on Microsoft’s official Visual Studio Code marketplace, has now expanded to open source alternatives, experts have claimed.

Recently, security researchers Socket said they discovered four extensions in Open VSX, an open, vendor-neutral marketplace for editor extensions (mainly used by developers who work with VS Code-compatible editors).


https://cdn.mos.cms.futurecdn.net/zErXnTyuwbch22EVU4PJKa-2560-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img