this post was submitted on 07 Apr 2025
13 points (100.0% liked)

Cybersecurity

7021 readers
98 users here now

c/cybersecurity is a community centered on the cybersecurity and information security profession. You can come here to discuss news, post something interesting, or just chat with others.

THE RULES

Instance Rules

Community Rules

If you ask someone to hack your "friends" socials you're just going to get banned so don't do that.

Learn about hacking

Hack the Box

Try Hack Me

Pico Capture the flag

Other security-related communities [email protected] [email protected] [email protected] [email protected] [email protected]

Notable mention to [email protected]

founded 2 years ago
MODERATORS
 

Edit 2025-04-09 16:42Z - article was updated with a tenth package (Prettier - Code)

A set of ten VSCode extensions on Microsoft's Visual Studio Code Marketplace pose as legitimate development tools while infecting users with the XMRig cryptominer for Monero.

ExtensionTotal researcher Yuval Ronen has uncovered ten VSCode extensions published on Microsoft's portal on April 4, 2025.

The package names are:

  1. Prettier - Code for VSCode (by prettier) - 486K installs
  2. Discord Rich Presence for VS Code (by Mark H) - 189K installs
  3. Rojo – Roblox Studio Sync (by evaera) - 117K installs
  4. Solidity Compiler (by VSCode Developer) - 1.3K installs
  5. Claude AI (by Mark H)
  6. Golang Compiler (by Mark H)
  7. ChatGPT Agent for VSCode (by Mark H)
  8. HTML Obfuscator (by Mark H)
  9. Python Obfuscator for VSCode (by Mark H)
  10. Rust Compiler for VSCode (by Mark H)
you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 3 points 1 week ago (1 children)

With features like this, remind me again why I should use VSCode?

[–] [email protected] 3 points 1 week ago* (last edited 1 week ago)

You can get similar miners on any platform, where there is a marketplace or store with minimal oversight. Obviously you can target different demographics, but it's not something special in vscode that made this specifically available here.

Or do you say the xz attack from last year was a "feature of linux" and linux shouldn't be used by anyone?

The extension store of vscode is a godsend, but you can use the third party unofficial fully foss store unrelated of microsoft: https://open-vsx.org/ You can literally find an extensions for any workflows or languages, please show me another editor where you can find language support for mikrotik rsc script files, AND home assistant style yaml AND AutoCAD dialect of lisp called AutoLisp. Just picked 3 obscure I actually used in my life.