A fake Visual Studio Code extension has been used in a supply chain attack that targets developers through their editor. The rogue extension, named prettier-vscode-plus and posing as the trusted Prettier formatter, appeared briefly in the official VSCode Marketplace before takedown. Once installed, it pulled staged scripts from a GitHub repository called vscode under the […]
The post Threat Actors Using Malicious VSCode Extension to Deploy Anivia Loader and OctoRAT appeared first on Cyber Security News.
Read the original article: