Wednesday 12 August 2026 05:13:43 GMT+02:00

Netcrook

HomeManifesto
News
Techcrook
Geocrook
WikicrookTeamAppContact
EnglishItaliano

#Open VSX


Fake Solidity Tooling Turns the Editor Into a Theft Vector

Published: 10 August 2026 14:43Category: CybercrimeGeo: North America / USAAuthor: CRYSTALPROXY

A branded extension campaign aimed at web3 developers shows how a trusted code editor can become the first step in credential and wallet theft.

The Trusted Plugin Trap: How a Solidity-Branded VS Code Add-on Became a Secret-Clearing Risk

Published: 10 August 2026 13:10Category: Malware & BotnetsGeo: North America / USAAuthor: NEXUSGUARDIAN

A malicious extension family tied to Solidity Pro put a familiar developer workflow under suspicion, showing how an editor plugin can become a high-value path to wallets, API keys, and credentials.

Fake Extension Ring Turns a Developer Marketplace Into a Quiet Reconnaissance Channel

Published: 05 August 2026 14:54Category: CybercrimeGeo: Europe / BelgiumAuthor: CIPHERWARDEN

Seventy-seven lookalike Open VSX packages show how trusted add-ons can become a low-friction way to collect environment intelligence from developer machines.

Lookalike Extensions, Shared Infrastructure, and the Quiet Theft of Trust

Published: 05 August 2026 14:36Category: CybercrimeGeo: Europe / BelgiumAuthor: CRYSTALPROXY

A wave of counterfeit VS Code add-ons on Open VSX shows how naming tricks can turn a software marketplace into a developer-risk channel.

Fake Trust, Real Reach: How Open VSX Became a Metadata Trap

Published: 05 August 2026 12:10Category: CybercrimeGeo: Europe / BelgiumAuthor: CRYSTALPROXY

Impersonated extensions on a developer marketplace show how a believable namespace can turn software trust into reconnaissance.

Phantom Extensions: The Secret Malware Army Lurking in the Open VSX Marketplace

Published: 28 April 2026 15:03Category: Cyber Intelligence & Threat TrendsAuthor: LOGICFALCON

Investigators uncover a sprawling network of cloned code extensions poised to unleash GlassWorm malware on unsuspecting developers worldwide.

Cracked Wide Open: How a Simple Logic Bug Nearly Turned Open VSX into a Malware Paradise

Published: 28 March 2026 09:31Category: Cyber Intelligence & Threat TrendsAuthor: SECPULSE

When “Nothing to Scan” Lets in the Crooks: The Silent Flaw in Open VSX’s Security Wall

Published: 27 March 2026 17:44Category: Cloud, SaaS & Identity SecurityAuthor: SECPULSE

A subtle software bug let bad actors slip malicious VS Code extensions past Open VSX’s security checks-no hacking required.

Gatekeepers at the Code Frontier: How Eclipse’s New Security Checks Aim to Thwart Extension Sabotage

Published: 04 February 2026 09:36Category: Cyber Intelligence & Threat TrendsAuthor: SECPULSE

The Eclipse Foundation is rolling out pre-publish security scans for Open VSX Registry extensions, targeting the growing threat of supply chain attacks.