Bloom Security’s Extension Resurrection research exposes a blind spot in developer security
Security teams have spent years scrutinizing software dependencies, package repositories and build pipelines. Bloom Security‘s latest research suggests that another part of the software supply chain deserves closer attention: the extensions developers install inside their IDEs. The company’s “Extension Resurrection” research examined extension packs on the Visual Studio Code Marketplace and Open VSX. Bloom found […] This story continues at The Next Web
This is a summary aggregated from NextWeb. Read the complete article on the original site:
Read full article at NextWeb