floofloof@lemmy.ca to Programming@programming.devEnglish · 25 days agoMalicious VSCode extensions with millions of installs discoveredwww.bleepingcomputer.comexternal-linkmessage-square48fedilinkarrow-up11arrow-down10cross-posted to: programming@beehaw.org
arrow-up11arrow-down1external-linkMalicious VSCode extensions with millions of installs discoveredwww.bleepingcomputer.comfloofloof@lemmy.ca to Programming@programming.devEnglish · 25 days agomessage-square48fedilinkcross-posted to: programming@beehaw.org
minus-squareTekhne@sh.itjust.workslinkfedilinkarrow-up0·24 days agoYou declare it in the package.json as a category when publishing. It’s completely self-selected with no oversight, review, or enforced permissions.
minus-squarehydroptic@sopuli.xyzlinkfedilinkarrow-up0·24 days agoMicrosoft security practices haven’t changed much over the decades
You declare it in the package.json as a category when publishing. It’s completely self-selected with no oversight, review, or enforced permissions.
Microsoft security practices haven’t changed much over the decades