Threats & Adversaries · Supply Chain

GlassWorm Uses Open VSX Extensions to Target Developers

GlassWorm operators deployed 72 malicious Open VSX extensions to target developers. Researchers found 151 infected GitHub repositories and say attackers abused extensionPack and extensionDependencies to make trusted extensions pull malicious payloads.

3 sources · Mar 17

Timeline

Sources

Part of the PlainSec briefing for 2026-03-15

Every edition of this story: GlassWorm Uses Open VSX Extensions to Target Developers

More from today