
- Researchers found 24 malicious extensions in Visual Studio Marketplace and Open VSX Registry deploying Lumma Stealer and other malware
- The attack targeted cryptocurrency holders and developers, with compromised extensions quickly replaced after removal
- Open-source extension platforms remain attractive targets due to their popularity and ease of malware distribution
Cybercriminals are once again targeting cryptocurrency holders and developers, by smuggling infostealers into open-source code repositories.