cognitive cybersecurity intelligence

News and Analysis

Search

Warning to developers: Stay away from these 10 VSCode extensions

Warning to developers: Stay away from these 10 VSCode extensions

Malicious extensions can be hard to detect, as they attempt to install a legitimate extension after being downloaded, providing the tool the user expected. The PowerShell script used tries to run a malicious payload with admin permissions. If that fails, it tries to create another directory and copy a file before creating a malicious DLL and executing it.

Source: www.csoonline.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts