Critical vulnerabilities in four widely used VS Code extensions could enable file theft and remote code execution across 125M ...
The hackers use fake CAPTCHA pages—which are designed to mimic standard security checks—to trick users into installing malicious software (“Stealthy StealC Information Stealer”) via keyboard commands.
Vulnerabilities with high to critical severity ratings affecting popular Visual Studio Code (VSCode) extensions collectively downloaded more than 128 million times could be exploited to steal local ...
Users could be tricked into running arbitrary code, but the issue was patched last week.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results