GlassWorm campaign infects developer IDEs with Zig dropper via fake extension

thehackernews.com

The GlassWorm campaign now uses a fake VS Code extension to infect multiple developer IDEs with a new Zig dropper. This malicious extension, disguised as WakaTime, installs a native binary that finds and infects other IDEs on the system, downloading and installing further malicious extensions. The campaign aims to steal data and deploy remote access trojans, with researchers urging users to rotate credentials if they installed the compromised extensions.


With a significance score of 3.9, this news ranks in the top 4.8% of today's 31047 analyzed articles.

Get summaries of news with significance over 5.5 (usually ~10 stories per week). Read by 10,000+ subscribers:


GlassWorm campaign infects developer IDEs with Zig dropper via fake extension | News Minimalist