Source: securityboulevard.com – Author: Ax Sharma
A counterfeit ‘Truffle for VS Code’ extension, published on the npmjs registry, abuses the ConnectWise ScreenConnect remote desktop utility, allowing threat actors to compromise Windows systems that install the package.
*** This is a Security Bloggers Network syndicated blog from 2024 Sonatype Blog authored by Ax Sharma. Read the original post at: https://www.sonatype.com/blog/fake-vs-code-extension-on-npm-uses-altered-screenconnect-utility-as-spyware
Original Post URL: https://securityboulevard.com/2025/02/fake-vs-code-extension-on-npm-uses-altered-screenconnect-utility-as-spyware/
Category & Tags: Malware,Security Bloggers Network,Vulnerabilities,Nexus Firewall,npm – Malware,Security Bloggers Network,Vulnerabilities,Nexus Firewall,npm
Views: 2