Security researchers at Yeeth Security have uncovered a sophisticated campaign on the Open VSX marketplace, where a...
Open VSX
A sophisticated cyber-espionage operation, dubbed the GlassWorm campaign, is rapidly expanding its footprint within the open-source community....
The threat actor known as GlassWorm has significantly escalated its operations, pivoting from simple malicious listings to...
A sophisticated supply chain attack has struck the open-source ecosystem, leveraging compromised developer credentials to inject malware...
Cybersecurity researchers at Wiz Research have uncovered what they describe as a “pattern of secret leakage” affecting...
A fraudulent extension for the Cursor AI IDE—an editor built upon Microsoft’s open-source Visual Studio Code—was used...