The GitHub Breach Through VS Code Is the One I Warned About
Mazin Ahmed reports that a GitHub breach was executed through a VS Code extension, exploiting the trust in the development toolchain. The attack leveraged a malicious extension to compromise credentials, highlighting risks in the software supply chain that the author had previously warned about.