TigerJack Campaign Targets Developers with Malicious VSCode Extensions
Summary
Hide ▲
Show ▼
The TigerJack campaign continues to target developers with malicious Visual Studio Code (VSCode) extensions, which have now been found to leak access tokens posing a critical software supply chain risk. The campaign has distributed at least 11 malicious VSCode extensions since the beginning of the year, with two extensions, C++ Playground and HTTP Format, removed from VSCode but remaining on OpenVSX. These extensions steal cryptocurrency, plant backdoors, and exfiltrate source code. The threat actor republishes the same malicious code under new names, making detection and removal challenging. Developers are advised to be cautious when downloading extensions from these platforms. Over 100 VSCode extensions were found to leak access tokens, allowing attackers to distribute malicious updates. The leaked tokens include AI provider secrets, cloud service provider secrets, and database secrets. Microsoft has revoked the leaked PATs and is adding secret scanning capabilities to enhance security. Organizations are recommended to develop an extension inventory and consider a centralized allowlist for extensions. A new malicious extension named susvsex with basic ransomware capabilities was published on Microsoft's official VS Code marketplace. The extension was published by 'suspublisher18' and its malicious functionality was openly advertised in its description. The extension's malicious functionality includes file theft to a remote server and encryption of all files with AES-256-CBC. The extension activates on any event, including on installation or when launching VS Code, initializing the 'extension.js' file that contains its hardcoded variables (IP, encryption keys, command-and-control address). The extension calls a function named zipUploadAndEncrypt which checks the presence of a marker text file, and starts the encryption routine. The extension creates a .ZIP archive of the files in the defined target directory and exfiltrates them to the hardcoded C2 address. All the files are then replaced with their encrypted versions. The extension polls a private GitHub repository for commands, periodically checking an 'index.html' file that uses a PAT token for authentication, and tries to execute any commands there. The owner of the repository is likely based in Azerbaijan. The extension is an overt threat and may be the result of an experiment to test Microsoft's vetting process. Secure Annex labels susvsex an 'AI slop' with its malicious actions exposed in the README file, but notes that a few tweaks would make it far more dangerous. Microsoft ignored the report about the extension and did not remove it from the VS Code registry initially, but it was no longer available by the time the article was published. Two new malicious extensions, Bitcoin Black and Codo AI, were found on Microsoft's Visual Studio Code Marketplace. Bitcoin Black masquerades as a color theme and Codo AI as an AI assistant, both published under the developer name 'BigBlack'. Bitcoin Black features a '*' activation event that executes on every VSCode action and can run PowerShell code. Bitcoin Black uses a batch script to download a DLL file and an executable, with the activity occurring with the window hidden. Codo AI includes code assistance functionality via ChatGPT or DeepSeek but also has a malicious section. Both extensions deliver a legitimate executable of the Lightshot screenshot tool and a malicious DLL file that deploys the infostealer under the name runtime.exe. The malware creates a directory in '%APPDATA%\Local\' and stores stolen data including screenshots, WiFi credentials, system information, and cryptocurrency wallets. The malware steals cookies and hijacks user sessions by launching Chrome and Edge browsers in headless mode. The malware steals cryptocurrency wallets like Phantom, Metamask, Exodus, and looks for passwords and credentials. The malicious DLL is flagged as a threat by 29 out of the 72 antivirus engines on Virus Total. Microsoft has removed the extensions BigBlack.bitcoin-black, BigBlack.codo-ai, and BigBlack.mrbigblacktheme from the Marketplace. The extensions activate on every VS Code action and embed malicious functionality within a working tool to bypass detection. Earlier versions of the extensions executed a PowerShell script to download a password-protected ZIP archive from an external server. Subsequent versions of the extensions used a batch script to download the executable and DLL, hiding the PowerShell window. The legitimate Lightshot binary is used to load the rogue DLL via DLL hijacking. The rogue DLL gathers clipboard contents, installed apps, running processes, desktop screenshots, Wi-Fi credentials, and detailed system information. The malware launches Google Chrome and Microsoft Edge in headless mode to grab stored cookies and hijack user sessions. A campaign involving 19 Visual Studio (VS) Code extensions that embed malware inside their dependency folders has been uncovered by cybersecurity researchers. Active since February 2025 but identified on December 2, the operation used a legitimate npm package to disguise harmful files and bundled malicious binaries inside an archive masquerading as a PNG image. This approach, observed by ReversingLabs (RL), enabled attackers to bypass conventional checks and target developers directly. Some extensions imitate popular tools, while others advertise new features but secretly execute unwanted code. In this new campaign, attackers embedded a modified version of the npm package path-is-absolute inside the extensions’ node_modules folders. The original package is widely used, with more than 9 billion downloads since 2021, but the altered version included a class designed to trigger malware when VS Code starts. The attackers also included a file named banner.png, which appeared harmless but opened as an archive containing two binaries. The dropper launched these files via cmstp.exe, a common living-off-the-land binary (LOLBIN). One executable closed the process by simulating a keypress, while the other was a Rust-based Trojan still being analyzed at the time of this report. Although the techniques differed, the goal remained the same: covertly execute malware through trusted components. Detecting malicious VS Code extensions has become increasingly urgent, ReversingLabs warned. The firm said detections grew from 27 in 2024 to 105 in the first 10 months of 2025. To reduce risk, teams are encouraged to inspect extensions before installation, audit all bundled dependencies, and use security tools capable of evaluating package behavior. All the mentioned extensions have been reported to Microsoft. A new malware campaign targeting developers with the Evelyn Stealer malware has been identified. This malware abuses VS Code extensions to exfiltrate sensitive information, including developer credentials and cryptocurrency-related data. The malware harvests clipboard content, installed apps, cryptocurrency wallets, running processes, desktop screenshots, stored Wi-Fi credentials, system information, and credentials and stored cookies from Google Chrome and Microsoft Edge. The malware implements safeguards to detect analysis and virtual environments and terminates active browser processes to ensure seamless data collection. The malware uses specific command-line flags to launch browsers in a stealthy manner, preventing detection and forensic traces. The DLL downloader creates a mutual exclusion (mutex) object to ensure only one instance of the malware can run at any given time. The Evelyn Stealer campaign targets organizations with software development teams that rely on VS Code and third-party extensions. The malware exfiltrates collected data to a remote server (server09.mentality[.]cloud) over FTP in the form of a ZIP file. Two malicious extensions in Microsoft’s Visual Studio Code (VSCode) Marketplace, collectively installed 1.5 million times, exfiltrate developer data to China-based servers. The extensions are advertised as AI-based coding assistants and provide the promised functionality but do not disclose the upload activity or ask users for consent to deliver data to a remote server. The extensions use three distinct data-collection mechanisms: real-time monitoring of files opened in the VS Code client, server-controlled file-harvesting commands, and zero-pixel iframes in the extension’s webview to load four commercial analytics SDKs. The extensions exfiltrate entire file contents and changes to the attackers’ servers, harvest up to 50 files from the victim’s workspace each time, and use SDKs to track user behavior, build identity profiles, fingerprint devices, and monitor activity inside the editor. The extensions pose risks including the exposure of private source code, configuration files, cloud service credentials, and .env files containing API keys and credentials. The extensions are part of a campaign dubbed 'MaliciousCorgi' and share the same code for stealing developer data and use the same spyware infrastructure and communicate with the same backend servers. The extensions are still present on the marketplace at the time of publishing: ChatGPT – 中文版 (publisher: WhenSunset, 1.34 million installs) and ChatMoss (CodeMoss) (publisher: zhukunpeng, 150k installs).
Timeline
-
06.11.2025 23:52 2 articles · 2mo ago
New Malicious Extension with Ransomware Capabilities Published
A new malicious extension named susvsex with basic ransomware capabilities was published on Microsoft's official VS Code marketplace. The extension was published by 'suspublisher18' and its malicious functionality was openly advertised in its description. The extension was uploaded on November 5, 2025, with the description 'Just testing' and the email address 'donotsupport@example[.]com.' The extension's description explicitly states it automatically zips, uploads, and encrypts files from C:\Users\Public\testing (Windows) or /tmp/testing (macOS) on first launch. The extension was removed from the official VS Code Extension Marketplace by Microsoft on November 6, 2025. The extension's TARGET_DIRECTORY is configured to be a test staging directory, but it can be easily updated with an extension release or as a command sent through the C2 channel. The extension includes extraneous comments, README files with execution instructions, and placeholder variables, indicating it is 'vibe coded' malware. The extension package accidentally included decryption tools, command and control server code, and GitHub access keys to the C2 server, which other people could use to take over the C2.
Show sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
-
15.10.2025 17:16 2 articles · 3mo ago
Microsoft Revokes Leaked PATs and Adds Secret Scanning
Microsoft revoked the leaked personal access tokens (PATs) and is adding secret scanning capabilities to block extensions with verified secrets and notify developers when secrets are detected. The cloud security firm Wiz identified over 550 validated secrets across more than 500 extensions from hundreds of distinct publishers. The 550 secrets fall under 67 distinct types of secrets, including AI provider secrets, cloud service provider secrets, and database secrets. The issue highlights the continued risks of extensions and plugins, and supply chain security in general.
Show sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
-
15.10.2025 00:35 11 articles · 3mo ago
TigerJack Campaign Distributes Malicious VSCode Extensions
Since the beginning of the year, TigerJack has distributed at least 11 malicious VSCode extensions. Two extensions, C++ Playground and HTTP Format, were removed from the VSCode marketplace but remain available on OpenVSX. These extensions steal cryptocurrency, plant backdoors, and exfiltrate source code. The threat actor republishes the same malicious code under new names, making detection and removal challenging. The extensions are disguised as legitimate tools and use various techniques to exfiltrate data and mine cryptocurrency. Developers are advised to be cautious when downloading extensions from these platforms. Over 100 VSCode extensions were found to leak access tokens, allowing attackers to distribute malicious updates. The leaked tokens include AI provider secrets, cloud service provider secrets, and database secrets. The extensions that leaked access tokens included themes and other types of extensions. The issue extends to internal or vendor-specific extensions used by organizations. Two new malicious extensions, Bitcoin Black and Codo AI, were found on Microsoft's Visual Studio Code Marketplace. Bitcoin Black masquerades as a color theme and Codo AI as an AI assistant, both published under the developer name 'BigBlack'. Bitcoin Black features a '*' activation event that executes on every VSCode action and can run PowerShell code. Bitcoin Black uses a batch script to download a DLL file and an executable, with the activity occurring with the window hidden. Codo AI includes code assistance functionality via ChatGPT or DeepSeek but also has a malicious section. Both extensions deliver a legitimate executable of the Lightshot screenshot tool and a malicious DLL file that deploys the infostealer under the name runtime.exe. The malware creates a directory in '%APPDATA%\Local\' and stores stolen data including screenshots, WiFi credentials, system information, and cryptocurrency wallets. The malware steals cookies and hijacks user sessions by launching Chrome and Edge browsers in headless mode. The malware steals cryptocurrency wallets like Phantom, Metamask, Exodus, and looks for passwords and credentials. The malicious DLL is flagged as a threat by 29 out of the 72 antivirus engines on Virus Total. Microsoft has removed the extensions BigBlack.bitcoin-black, BigBlack.codo-ai, and BigBlack.mrbigblacktheme from the Marketplace. The extensions activate on every VS Code action and embed malicious functionality within a working tool to bypass detection. Earlier versions of the extensions executed a PowerShell script to download a password-protected ZIP archive from an external server. Subsequent versions of the extensions used a batch script to download the executable and DLL, hiding the PowerShell window. The legitimate Lightshot binary is used to load the rogue DLL via DLL hijacking. The rogue DLL gathers clipboard contents, installed apps, running processes, desktop screenshots, Wi-Fi credentials, and detailed system information. The malware launches Google Chrome and Microsoft Edge in headless mode to grab stored cookies and hijack user sessions. A campaign involving 19 Visual Studio (VS) Code extensions that embed malware inside their dependency folders has been uncovered by cybersecurity researchers. Active since February 2025 but identified on December 2, the operation used a legitimate npm package to disguise harmful files and bundled malicious binaries inside an archive masquerading as a PNG image. This approach, observed by ReversingLabs (RL), enabled attackers to bypass conventional checks and target developers directly. Some extensions imitate popular tools, while others advertise new features but secretly execute unwanted code. In this new campaign, attackers embedded a modified version of the npm package path-is-absolute inside the extensions’ node_modules folders. The original package is widely used, with more than 9 billion downloads since 2021, but the altered version included a class designed to trigger malware when VS Code starts. The attackers also included a file named banner.png, which appeared harmless but opened as an archive containing two binaries. The dropper launched these files via cmstp.exe, a common living-off-the-land binary (LOLBIN). One executable closed the process by simulating a keypress, while the other was a Rust-based Trojan still being analyzed at the time of this report. Although the techniques differed, the goal remained the same: covertly execute malware through trusted components. Detecting malicious VS Code extensions has become increasingly urgent, ReversingLabs warned. The firm said detections grew from 27 in 2024 to 105 in the first 10 months of 2025. To reduce risk, teams are encouraged to inspect extensions before installation, audit all bundled dependencies, and use security tools capable of evaluating package behavior. All the mentioned extensions have been reported to Microsoft. A new malware campaign targeting developers with the Evelyn Stealer malware has been identified. This malware abuses VS Code extensions to exfiltrate sensitive information, including developer credentials and cryptocurrency-related data. The malware harvests clipboard content, installed apps, cryptocurrency wallets, running processes, desktop screenshots, stored Wi-Fi credentials, system information, and credentials and stored cookies from Google Chrome and Microsoft Edge. The malware implements safeguards to detect analysis and virtual environments and terminates active browser processes to ensure seamless data collection. The malware uses specific command-line flags to launch browsers in a stealthy manner, preventing detection and forensic traces. The DLL downloader creates a mutual exclusion (mutex) object to ensure only one instance of the malware can run at any given time. The Evelyn Stealer campaign targets organizations with software development teams that rely on VS Code and third-party extensions. The malware exfiltrates collected data to a remote server (server09.mentality[.]cloud) over FTP in the form of a ZIP file. Two malicious extensions in Microsoft’s Visual Studio Code (VSCode) Marketplace, collectively installed 1.5 million times, exfiltrate developer data to China-based servers. The extensions are advertised as AI-based coding assistants and provide the promised functionality but do not disclose the upload activity or ask users for consent to deliver data to a remote server. The extensions use three distinct data-collection mechanisms: real-time monitoring of files opened in the VS Code client, server-controlled file-harvesting commands, and zero-pixel iframes in the extension’s webview to load four commercial analytics SDKs. The extensions exfiltrate entire file contents and changes to the attackers’ servers, harvest up to 50 files from the victim’s workspace each time, and use SDKs to track user behavior, build identity profiles, fingerprint devices, and monitor activity inside the editor. The extensions pose risks including the exposure of private source code, configuration files, cloud service credentials, and .env files containing API keys and credentials. The extensions are part of a campaign dubbed 'MaliciousCorgi' and share the same code for stealing developer data and use the same spyware infrastructure and communicate with the same backend servers. The extensions are still present on the marketplace at the time of publishing: ChatGPT – 中文版 (publisher: WhenSunset, 1.34 million installs) and ChatMoss (CodeMoss) (publisher: zhukunpeng, 150k installs).
Show sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
Information Snippets
-
TigerJack is a threat actor targeting developers with malicious VSCode extensions.
First reported: 15.10.2025 00:353 sources, 8 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
The campaign has distributed at least 11 malicious VSCode extensions since the beginning of the year.
First reported: 15.10.2025 00:353 sources, 7 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Two extensions, C++ Playground and HTTP Format, were removed from VSCode but remain on OpenVSX.
First reported: 15.10.2025 00:353 sources, 6 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
C++ Playground exfiltrates source code to external endpoints.
First reported: 15.10.2025 00:353 sources, 6 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
HTTP Format runs a CoinIMP miner in the background using the host’s processing power.
First reported: 15.10.2025 00:353 sources, 6 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
Some extensions fetch and execute JavaScript code from a hardcoded address every 20 minutes.
First reported: 15.10.2025 00:353 sources, 6 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
TigerJack operates as a coordinated multi-account operation with credible backgrounds.
First reported: 15.10.2025 00:353 sources, 5 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
OpenVSX has not responded to reports of the malicious extensions.
First reported: 15.10.2025 00:353 sources, 4 articlesShow sources
- Malicious crypto-stealing VSCode extensions resurface on OpenVSX — www.bleepingcomputer.com — 15.10.2025 00:35
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
Over 100 Visual Studio Code (VS Code) extensions leaked access tokens, posing a critical software supply chain risk.
First reported: 15.10.2025 17:163 sources, 7 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The leaked tokens could allow attackers to distribute malicious updates across the entire install base.
First reported: 15.10.2025 17:163 sources, 7 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Wiz security researcher Rami McCarthy identified over 550 validated secrets across more than 500 extensions.
First reported: 15.10.2025 17:163 sources, 5 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The secrets included AI provider secrets, cloud service provider secrets, and database secrets.
First reported: 15.10.2025 17:163 sources, 6 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
More than 100 extensions leaked VS Code Marketplace PATs, accounting for over 85,000 installs.
First reported: 15.10.2025 17:163 sources, 6 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Another 30 extensions with a cumulative install base of at least 100,000 leaked Open VSX Access Tokens.
First reported: 15.10.2025 17:163 sources, 6 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions that leaked access tokens included themes and other types of extensions.
First reported: 15.10.2025 17:163 sources, 6 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The issue extends to internal or vendor-specific extensions used by organizations.
First reported: 15.10.2025 17:163 sources, 7 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Microsoft revoked the leaked PATs and is adding secret scanning capabilities to block extensions with verified secrets.
First reported: 15.10.2025 17:163 sources, 7 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
VS Code users are advised to limit the number of installed extensions and scrutinize them before downloading.
First reported: 15.10.2025 17:163 sources, 7 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Organizations are recommended to develop an extension inventory and consider a centralized allowlist for extensions.
First reported: 15.10.2025 17:163 sources, 4 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
The TigerJack campaign involved sophisticated extensions that steal source code, mine cryptocurrency, and establish remote backdoors.
First reported: 15.10.2025 17:163 sources, 5 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions C++ Playground and HTTP Format attracted over 17,000 downloads before their takedown.
First reported: 15.10.2025 17:163 sources, 4 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
The C++ Playground extension captures keystrokes to steal C++ source code files.
First reported: 15.10.2025 17:163 sources, 4 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
The HTTP Format extension runs the CoinIMP miner to mine cryptocurrency.
First reported: 15.10.2025 17:163 sources, 4 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
Three other extensions published by TigerJack can act as backdoors by downloading and running arbitrary JavaScript from an external server every 20 minutes.
First reported: 15.10.2025 17:163 sources, 4 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
The extensions started as benign tools before malicious modifications were introduced.
First reported: 15.10.2025 17:163 sources, 4 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
-
Microsoft has a multi-step process to keep the VS Code marketplace free of malware, but these protections do not apply to other registries like Open VSX.
First reported: 15.10.2025 17:163 sources, 7 articlesShow sources
- Over 100 VS Code Extensions Exposed Developers to Hidden Supply Chain Risks — thehackernews.com — 15.10.2025 17:16
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
A malicious extension named susvsex with basic ransomware capabilities was published on Microsoft's official VS Code marketplace.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension was published by 'suspublisher18' and its malicious functionality was openly advertised in its description.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension's malicious functionality includes file theft to a remote server and encryption of all files with AES-256-CBC.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension activates on any event, including on installation or when launching VS Code, initializing the 'extension.js' file that contains its hardcoded variables (IP, encryption keys, command-and-control address).
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension calls a function named zipUploadAndEncrypt which checks the presence of a marker text file, and starts the encryption routine.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension creates a .ZIP archive of the files in the defined target directory and exfiltrates them to the hardcoded C2 address. All the files are then replaced with their encrypted versions.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension polls a private GitHub repository for commands, periodically checking an 'index.html' file that uses a PAT token for authentication, and tries to execute any commands there.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The owner of the repository is likely based in Azerbaijan.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension is an overt threat and may be the result of an experiment to test Microsoft’s vetting process.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Secure Annex labels susvsex an 'AI slop' with its malicious actions exposed in the README file, but notes that a few tweaks would make it far more dangerous.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Microsoft ignored the report about the extension and did not remove it from the VS Code registry initially, but it was no longer available by the time the article was published.
First reported: 06.11.2025 23:523 sources, 6 articlesShow sources
- AI-Slop ransomware test sneaks on to VS Code marketplace — www.bleepingcomputer.com — 06.11.2025 23:52
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension 'susvsex' was uploaded on November 5, 2025, by a user named 'suspublisher18' with the description 'Just testing' and the email address 'donotsupport@example[.]com.'
First reported: 07.11.2025 08:483 sources, 5 articlesShow sources
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension was removed from the official VS Code Extension Marketplace by Microsoft on November 6, 2025.
First reported: 07.11.2025 08:483 sources, 5 articlesShow sources
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension's description explicitly states it automatically zips, uploads, and encrypts files from C:\Users\Public\testing (Windows) or /tmp/testing (macOS) on first launch.
First reported: 07.11.2025 08:483 sources, 5 articlesShow sources
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension's TARGET_DIRECTORY is configured to be a test staging directory, but it can be easily updated with an extension release or as a command sent through the C2 channel.
First reported: 07.11.2025 08:483 sources, 5 articlesShow sources
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension includes extraneous comments, README files with execution instructions, and placeholder variables, indicating it is 'vibe coded' malware.
First reported: 07.11.2025 08:483 sources, 5 articlesShow sources
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extension package accidentally included decryption tools, command and control server code, and GitHub access keys to the C2 server, which other people could use to take over the C2.
First reported: 07.11.2025 08:483 sources, 5 articlesShow sources
- Vibe-Coded Malicious VS Code Extension Found with Built-In Ransomware Capabilities — thehackernews.com — 07.11.2025 08:48
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Two malicious extensions, Bitcoin Black and Codo AI, were found on Microsoft's Visual Studio Code Marketplace.
First reported: 09.12.2025 00:303 sources, 6 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Bitcoin Black masquerades as a color theme and Codo AI as an AI assistant, both published under the developer name 'BigBlack'.
First reported: 09.12.2025 00:303 sources, 6 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Bitcoin Black features a '*' activation event that executes on every VSCode action and can run PowerShell code.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Bitcoin Black uses a batch script to download a DLL file and an executable, with the activity occurring with the window hidden.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Codo AI includes code assistance functionality via ChatGPT or DeepSeek but also has a malicious section.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Both extensions deliver a legitimate executable of the Lightshot screenshot tool and a malicious DLL file that deploys the infostealer under the name runtime.exe.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware creates a directory in '%APPDATA%\Local\' and stores stolen data including screenshots, WiFi credentials, system information, and cryptocurrency wallets.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware steals cookies and hijacks user sessions by launching Chrome and Edge browsers in headless mode.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware steals cryptocurrency wallets like Phantom, Metamask, Exodus, and looks for passwords and credentials.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malicious DLL is flagged as a threat by 29 out of the 72 antivirus engines on Virus Total.
First reported: 09.12.2025 00:303 sources, 7 articlesShow sources
- Malicious VSCode extensions on Microsoft's registry drop infostealers — www.bleepingcomputer.com — 09.12.2025 00:30
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions BigBlack.bitcoin-black and BigBlack.codo-ai were removed by Microsoft on December 5, 2025, and December 8, 2025, respectively.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Microsoft also removed a third package named BigBlack.mrbigblacktheme from the same publisher for containing malware.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions activate on every VS Code action and embed malicious functionality within a working tool to bypass detection.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Earlier versions of the extensions executed a PowerShell script to download a password-protected ZIP archive from an external server.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Subsequent versions of the extensions used a batch script to download the executable and DLL, hiding the PowerShell window.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The legitimate Lightshot binary is used to load the rogue DLL via DLL hijacking.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The rogue DLL gathers clipboard contents, installed apps, running processes, desktop screenshots, Wi-Fi credentials, and detailed system information.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware launches Google Chrome and Microsoft Edge in headless mode to grab stored cookies and hijack user sessions.
First reported: 09.12.2025 10:073 sources, 6 articlesShow sources
- Researchers Find Malicious VS Code, Go, npm, and Rust Packages Stealing Developer Data — thehackernews.com — 09.12.2025 10:07
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malicious extensions Bitcoin Black and Codo AI were detailed in a report published by the Koi Security research team on Monday.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Bitcoin Black presented itself as a cryptocurrency-themed color scheme, while Codo AI offered a functional coding assistant that integrated ChatGPT and DeepSeek.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Both extensions executed hidden scripts that downloaded a payload using a bundled version of the Lightshot screenshot tool paired with a malicious DLL.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Bitcoin Black used activation events and PowerShell execution uncommon for legitimate themes.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Codo AI provided genuine coding features, which helped the attacker avoid suspicion during installation and use.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Version 2.5.0 of the extensions relied on a complex PowerShell routine that downloaded a password-protected ZIP archive and attempted extraction through several fallback methods.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
By version 3.3.0, the attacker had streamlined the delivery chain, switching to a hidden batch script that fetched an executable and DLL directly over HTTP and prevented repeated execution through a marker file.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The infostealer collected clipboard contents, installed programs, running processes, desktop screenshots, stored WiFi credentials, and browser session data.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The payload used DLL hijacking by pairing a legitimate Lightshot executable with the attacker’s DLL.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Koi Security identified command-and-control (C2) domains designed to receive exfiltrated data, along with a distinct mutex name intended to stop multiple instances from running simultaneously.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Koi Security attributed both extensions to the same threat actor experimenting with separate lures.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
At the time of writing, Codo AI is still live on the VS Code marketplace.
First reported: 09.12.2025 18:453 sources, 5 articlesShow sources
- Malicious VS Code Extensions Deploy Advanced Infostealer — www.infosecurity-magazine.com — 09.12.2025 18:45
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
A campaign involving 19 Visual Studio (VS) Code extensions that embed malware inside their dependency folders has been uncovered by cybersecurity researchers.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Active since February 2025 but identified on December 2, the operation used a legitimate npm package to disguise harmful files and bundled malicious binaries inside an archive masquerading as a PNG image.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
This approach, observed by ReversingLabs (RL), enabled attackers to bypass conventional checks and target developers directly.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Some extensions imitate popular tools, while others advertise new features but secretly execute unwanted code.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
In this new campaign, attackers embedded a modified version of the npm package path-is-absolute inside the extensions’ node_modules folders.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The original package is widely used, with more than 9 billion downloads since 2021, but the altered version included a class designed to trigger malware when VS Code starts.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The attackers also included a file named banner.png, which appeared harmless but opened as an archive containing two binaries.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The dropper launched these files via cmstp.exe, a common living-off-the-land binary (LOLBIN).
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
One executable closed the process by simulating a keypress, while the other was a Rust-based Trojan still being analyzed at the time of this report.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Although the techniques differed, the goal remained the same: covertly execute malware through trusted components.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Detecting malicious VS Code extensions has become increasingly urgent, ReversingLabs warned. The firm said detections grew from 27 in 2024 to 105 in the first 10 months of 2025.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
To reduce risk, teams are encouraged to inspect extensions before installation, audit all bundled dependencies, and use security tools capable of evaluating package behavior.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
All the mentioned extensions have been reported to Microsoft.
First reported: 11.12.2025 18:003 sources, 4 articlesShow sources
- Malware Discovered in 19 Visual Studio Code Extensions — www.infosecurity-magazine.com — 11.12.2025 18:00
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The campaign involved 19 VSCode extensions that used a modified version of the npm package 'path-is-absolute' to execute malware when VSCode starts.
First reported: 11.12.2025 22:542 sources, 3 articlesShow sources
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malicious extensions included a file named 'banner.png' that appeared harmless but opened as an archive containing two binaries: a living-off-the-land binary (LoLBin) called 'cmstp.exe' and a Rust-based trojan.
First reported: 11.12.2025 22:542 sources, 3 articlesShow sources
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions used variations of the following names, all published with the version number 1.0.0: Malkolm Theme, PandaExpress Theme, Prada 555 Theme, Priskinski Theme.
First reported: 11.12.2025 22:542 sources, 3 articlesShow sources
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
ReversingLabs reported the malicious extensions to Microsoft, and all of them have been removed from the VSCode Marketplace.
First reported: 11.12.2025 22:542 sources, 3 articlesShow sources
- Malicious VSCode Marketplace extensions hid trojan in fake PNG file — www.bleepingcomputer.com — 11.12.2025 22:54
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Evelyn Stealer malware targets developers using Visual Studio Code extensions to exfiltrate sensitive information, including developer credentials and cryptocurrency-related data.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware harvests clipboard content, installed apps, cryptocurrency wallets, running processes, desktop screenshots, stored Wi-Fi credentials, system information, and credentials and stored cookies from Google Chrome and Microsoft Edge.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware implements safeguards to detect analysis and virtual environments and terminates active browser processes to ensure seamless data collection.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware uses specific command-line flags to launch browsers in a stealthy manner, preventing detection and forensic traces.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The DLL downloader creates a mutual exclusion (mutex) object to ensure only one instance of the malware can run at any given time.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The Evelyn Stealer campaign targets organizations with software development teams that rely on VS Code and third-party extensions.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The malware exfiltrates collected data to a remote server (server09.mentality[.]cloud) over FTP in the form of a ZIP file.
First reported: 20.01.2026 13:482 sources, 3 articlesShow sources
- Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto — thehackernews.com — 20.01.2026 13:48
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Two malicious extensions in Microsoft’s Visual Studio Code (VSCode) Marketplace, collectively installed 1.5 million times, exfiltrate developer data to China-based servers.
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions are advertised as AI-based coding assistants and provide the promised functionality but do not disclose the upload activity or ask users for consent to deliver data to a remote server.
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions use three distinct data-collection mechanisms: real-time monitoring of files opened in the VS Code client, server-controlled file-harvesting commands, and zero-pixel iframes in the extension’s webview to load four commercial analytics SDKs.
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions exfiltrate entire file contents and changes to the attackers’ servers, harvest up to 50 files from the victim’s workspace each time, and use SDKs to track user behavior, build identity profiles, fingerprint devices, and monitor activity inside the editor.
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions pose risks including the exposure of private source code, configuration files, cloud service credentials, and .env files containing API keys and credentials.
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions are part of a campaign dubbed 'MaliciousCorgi' and share the same code for stealing developer data and use the same spyware infrastructure and communicate with the same backend servers.
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions are still present on the marketplace at the time of publishing: ChatGPT – 中文版 (publisher: WhenSunset, 1.34 million installs) and ChatMoss (CodeMoss) (publisher: zhukunpeng, 150k installs).
First reported: 23.01.2026 22:112 sources, 2 articlesShow sources
- Malicious AI extensions on VSCode Marketplace steal developer data — www.bleepingcomputer.com — 23.01.2026 22:11
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
Two malicious extensions in Microsoft's Visual Studio Code (VSCode) Marketplace, collectively installed 1.5 million times, exfiltrate developer data to China-based servers.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions are advertised as AI-based coding assistants and provide the promised functionality but do not disclose the upload activity or ask users for consent to deliver data to a remote server.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions use three distinct data-collection mechanisms: real-time monitoring of files opened in the VS Code client, server-controlled file-harvesting commands, and zero-pixel iframes in the extension's webview to load four commercial analytics SDKs.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions exfiltrate entire file contents and changes to the attackers' servers, harvest up to 50 files from the victim's workspace each time, and use SDKs to track user behavior, build identity profiles, fingerprint devices, and monitor activity inside the editor.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions pose risks including the exposure of private source code, configuration files, cloud service credentials, and .env files containing API keys and credentials.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions are part of a campaign dubbed 'MaliciousCorgi' and share the same code for stealing developer data and use the same spyware infrastructure and communicate with the same backend servers.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions are still present on the marketplace at the time of publishing: ChatGPT – 中文版 (publisher: WhenSunset, 1.34 million installs) and ChatMoss (CodeMoss) (publisher: zhukunpeng, 150k installs).
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions use four commercial analytics SDKs: Zhuge.io, GrowingIO, TalkingData, and Baidu Analytics, all of which are major data analytics platforms based in China.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions capture every file being opened and every source code modification to servers located in China (aihao123[.]cn) without users' knowledge or consent.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
-
The extensions work exactly as advertised, providing autocomplete suggestions and explaining coding errors, thereby avoiding raising any red flags and lowering the users' suspicion.
First reported: 26.01.2026 17:431 source, 1 articleShow sources
- Malicious VS Code AI Extensions with 1.5 Million Installs Steal Developer Source Code — thehackernews.com — 26.01.2026 17:43
Similar Happenings
Hackers Exploit Misconfigured Security Testing Apps to Breach Cloud Environments
Threat actors are exploiting misconfigured security testing applications, such as DVWA, OWASP Juice Shop, Hackazon, and bWAPP, to gain access to cloud environments of Fortune 500 companies and security vendors. These applications, intended to be intentionally vulnerable for training and testing, pose a significant risk when exposed on the public internet and executed from privileged cloud accounts. Researchers from Pentera discovered 1,926 live, vulnerable applications linked to overly privileged IAM roles, deployed on AWS, GCP, and Azure. Many instances used default credentials and exposed cloud credential sets, allowing attackers to deploy crypto miners, webshells, and gain admin access to cloud environments. Active exploitation was confirmed, with evidence of crypto mining using XMRig, deployment of webshells, and advanced persistence mechanisms. Security vendors such as F5, Cloudflare, and Palo Alto Networks were among those affected.
VoidLink Malware Framework Targets Cloud and Container Environments
A new advanced Linux malware framework, codenamed VoidLink, has been discovered targeting cloud and container environments. Developed by a single person with the help of an artificial intelligence model, VoidLink is a highly modular and flexible framework designed for long-term, stealthy access to Linux-based systems. It includes custom loaders, implants, rootkits, and over 30 plugins, enabling operators to adapt its capabilities over time. The malware is engineered to detect major cloud environments and adapt its behavior when running within Docker containers or Kubernetes pods. It also gathers credentials associated with cloud environments and source code version control systems like Git. VoidLink's capabilities include anti-forensics, reconnaissance, credential harvesting, lateral movement, and persistence, making it a full-fledged post-exploitation framework. The framework is written primarily in the Zig programming language and includes plans to extend its detection capabilities to additional cloud environments such as Huawei, DigitalOcean, and Vultr. VoidLink's documentation suggests it is intended for commercial purposes, and its development environment includes debug symbols and other development artifacts, indicating in-progress builds. VoidLink uses a custom encrypted messaging layer called 'VoidStream' to camouflage traffic and includes 35 plugins in the default configuration. The framework employs rootkit modules to hide processes, files, network sockets, or the rootkit itself, and includes advanced anti-analysis mechanisms to detect debuggers, perform runtime code encryption, and integrity checks. VoidLink's anti-forensic modules erase logs, shell history, login records, and securely overwrite all files dropped on the host, minimizing exposure to forensic investigations. VoidLink was developed with the help of an artificial intelligence model, reaching a functional iteration in under a week. The developer used Spec-Driven Development (SDD) to define the project's goals and set constraints, with the AI generating a multi-team development plan. VoidLink reached 88,000 lines of code by early December 2025, and researchers successfully reproduced the workflow, confirming that an AI agent can generate code similar to VoidLink's. The developer utilized regular checkpoints to check in on the AI-generated code to ensure that the model was developing it as instructed and that the code worked.
Target's internal source code allegedly stolen and offered for sale
Hackers claim to have stolen and are selling internal source code from Target Corporation. They published sample repositories on Gitea and advertised a larger dataset for sale on an underground forum. Target's developer Git server, git.target.com, became inaccessible after the claims were made public. Multiple current and former Target employees have confirmed the authenticity of the leaked source code and documentation. Internal communications announced an 'accelerated' security change restricting access to Target's Enterprise Git server. The leaked data includes references to real internal systems and proprietary project codenames, raising concerns about the scope and sensitivity of the stolen data. Security researcher Alon Gal identified a Target employee workstation compromised by infostealer malware in late September 2025 with extensive access to internal services, potentially linked to the data leak.
DarkSpectre Campaigns Target 8.8 Million Users with Malicious Browser Extensions
A Chinese threat actor, DarkSpectre, has been linked to three malicious browser extension campaigns—ShadyPanda, GhostPoster, and The Zoom Stealer—which have collectively impacted 8.8 million users across Google Chrome, Microsoft Edge, and Mozilla Firefox over seven years. The campaigns facilitate data theft, search query hijacking, affiliate fraud, and corporate espionage by exfiltrating meeting-related data from video conferencing platforms. Additionally, five new malicious Chrome extensions impersonating HR and ERP platforms have been discovered, targeting Workday, NetSuite, and SAP SuccessFactors to hijack accounts. These extensions steal authentication tokens, block incident response capabilities, and enable complete account takeover through session hijacking. The extensions, some of which were recently taken down, used delayed activation and benign updates to evade detection and build trust before deploying malicious functionality. The extensions were designed to look polished and professional, with some claiming to contain security features to prevent account compromise. They engaged in a range of actions to take control of accounts, including extracting authentication cookies and uploading them to a command and control (C2) server every 60 seconds. The extensions prevented passwords from being changed to help ensure stolen access tokens remained valid indefinitely and prevented security teams from locking out compromised accounts during remediation. Administrators attempting to disable an affected user's account encountered a blank page and redirect loop. Socket recommended that organizations implement Chrome Enterprise extension allowlists to prevent installation of unauthorized extensions and monitor for extensions targeting the same enterprise platforms with similar permission requests.
ErrTraffic Service Enables Automated ClickFix Attacks via Fake Browser Glitches
A new cybercrime tool called ErrTraffic automates ClickFix attacks by generating fake browser glitches on compromised websites to trick users into downloading malware or following malicious instructions. The service promises high conversion rates and delivers architecture-specific payloads. ClickFix attacks have gained popularity among cybercriminals and state-sponsored actors for bypassing security controls. ErrTraffic is sold for a one-time purchase of $800 and offers a user-friendly panel for campaign management. It modifies the DOM of compromised websites to display visual glitches, prompting victims to execute malicious commands. Payloads include Lumma and Vidar info-stealers on Windows, Cerberus trojan on Android, AMOS stealer on macOS, and unspecified Linux backdoors.