Attackers can abuse VS Code configuration files for RCE when a GitHub Codespaces user opens a repository or pull request.
Microsoft outlines new AI reliability, agentic coding, and Copilot improvements coming to Visual Studio 2026, with a focus on ...
Eclipse Foundation to require pre-publish security checks for Open VSX extensions to reduce VS Code supply-chain risk.
Hackers have already published a fake Visual Studio Code extension that impersonates the assistant under its former name, ...
Cybersecurity researchers from Socket’s Threat Research team have identified a developer-compromise supply chain attack ...
GlassWorm malware is expanding to open source platforms, targeting macOS users with infostealers.
XDA Developers on MSN
4 VS Code forks built for specific tasks
The classic VS Code is great and all, but these specialized forks are better for certain programming tasks ...
A compromised Open VSX publisher account was used to distribute malicious extensions in a new GlassWorm supply chain attack.
Quantum computing has attracted attention for years, but for most developers it has felt distant and impractical. By making its development kit open source and integrating it with widely used tools ...
A Microsoft Visual Studio Code extension for Moltbot turns out to actually deliver a malware payload to unsuspecting users.
More than 1.5 million people may have had their sensitive data exfiltrated to Chinese hackers through two malicious extensions found on the VSCode Marketplace.
Security researchers found two AI-branded VS Code extensions with 1.5M installs that covertly send source code and files to China-based servers.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results