Yesterday's newsletter covered the dangers of malicious VSCode extensions hosted on Open VSX: https://news.risky.biz/risky-bulletin-crypto-thieves-turn-their-sights-on-open-vsx/

Here's the latest of those incidents: https://x.com/0xzak/status/1955265807807545763

Link Preview Image