#9
The Hacker News
general
March 14, 2026 at 12:55 UTC
GlassWorm Supply-Chain Attack Abuses 72 Open VSX Extensions to Target Developers
By [email protected] (The Hacker News)
AI Summary
The GlassWorm campaign escalated by abusing 72 Open VSX registry extensions, using extensionPack and extensionDependencies to turn standalone extensions into transitive malware loaders targeting developers. This supply-chain attack represents a significant escalation in how malicious code propagates through developer tool ecosystems.
Relevance score: 76.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →