GlassWorm Expands via GitHub-Hosted VSIX Extensions
Dormant VSX extensions were activated to deliver trojanised VSIX files from GitHub, bypassing registry takedowns and executing AES-256 payloads in memory with Solana blockchain C2.
Source: Socket
Read more: CyberSecBrief













