floofloof@lemmy.ca to Programming@programming.devEnglish · 7 months agoMalicious VSCode extensions with millions of installs discoveredwww.bleepingcomputer.comexternal-linkmessage-square53fedilinkarrow-up1253arrow-down114cross-posted to: programming@beehaw.org
arrow-up1239arrow-down1external-linkMalicious VSCode extensions with millions of installs discoveredwww.bleepingcomputer.comfloofloof@lemmy.ca to Programming@programming.devEnglish · 7 months agomessage-square53fedilinkcross-posted to: programming@beehaw.org
minus-squareTekhne@sh.itjust.workslinkfedilinkarrow-up17·7 months agoYou declare it in the package.json as a category when publishing. It’s completely self-selected with no oversight, review, or enforced permissions.
minus-squarehydroptic@sopuli.xyzlinkfedilinkarrow-up3·7 months agoMicrosoft security practices haven’t changed much over the decades
You declare it in the package.json as a category when publishing. It’s completely self-selected with no oversight, review, or enforced permissions.
Microsoft security practices haven’t changed much over the decades