A new playground: Malicious campaigns proliferate from VSCode to npmTo avoid compromised packages being introduced as a dependency in a larger project, security teams need to keep an eye peeled for such malicious code.#reversinglabs#EN#2024#Malicious#VSCode#npm#Supply-Chain-Attack·reversinglabs.com·Dec 20, 2024A new playground: Malicious campaigns proliferate from VSCode to npm
Fake recruiter coding tests target devs with malicious Python packagesRL found the VMConnect campaign continuing with malicious actors posing as recruiters, using packages and the names of financial firms to lure developers.#reversinglabs#EN#2024#VMConnect#campaign#Python#packages#devs#Fake#recruiter#coding#tests·reversinglabs.com·Oct 17, 2024Fake recruiter coding tests target devs with malicious Python packages