Popular AI-powered integrated development environment solutions, such as Cursor, Windsurf, Google Antigravity, and Trae, recommend extensions that are non-existent in the OpenVSX registry, allowing threat actors to claim the namespace and upload malicious extensions.

.


#
The Tattooed Nonna 👑
in reply to Michał "rysiek" Woźniak · 🇺🇦 • • •Andre Louis
in reply to The Tattooed Nonna 👑 • • •