floofloof@lemmy.ca to Programming@programming.devEnglish · 25 days agoMalicious VSCode extensions with millions of installs discoveredwww.bleepingcomputer.comexternal-linkmessage-square53fedilinkarrow-up1245arrow-down114cross-posted to: programming@beehaw.org
arrow-up1231arrow-down1external-linkMalicious VSCode extensions with millions of installs discoveredwww.bleepingcomputer.comfloofloof@lemmy.ca to Programming@programming.devEnglish · 25 days agomessage-square53fedilinkcross-posted to: programming@beehaw.org
minus-squareTekhne@sh.itjust.workslinkfedilinkarrow-up17·25 days agoYou declare it in the package.json as a category when publishing. It’s completely self-selected with no oversight, review, or enforced permissions.
minus-squarehydroptic@sopuli.xyzlinkfedilinkarrow-up3·25 days agoMicrosoft security practices haven’t changed much over the decades
You declare it in the package.json as a category when publishing. It’s completely self-selected with no oversight, review, or enforced permissions.
Microsoft security practices haven’t changed much over the decades