Attackers can abuse VS Code configuration files for RCE when a GitHub Codespaces user opens a repository or pull request.
North Korea is doubling down on a familiar playbook by weaponizing trust in open-source software and developer workflows. The ...
A group of Israeli researchers explored the security of the Visual Studio Code marketplace and managed to "infect" over 100 organizations by trojanizing a copy of the popular 'Dracula Official theme ...