惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

S
SegmentFault 最新的问题
博客园 - 三生石上(FineUI控件)
WordPress大学
WordPress大学
博客园 - 【当耐特】
月光博客
月光博客
Vercel News
Vercel News
D
Docker
I
InfoQ
Apple Machine Learning Research
Apple Machine Learning Research
博客园 - 叶小钗
MongoDB | Blog
MongoDB | Blog
GbyAI
GbyAI
有赞技术团队
有赞技术团队
雷峰网
雷峰网
博客园 - 聂微东
小众软件
小众软件
Y
Y Combinator Blog
腾讯CDC
L
LangChain Blog
The GitHub Blog
The GitHub Blog
宝玉的分享
宝玉的分享
Stack Overflow Blog
Stack Overflow Blog
大猫的无限游戏
大猫的无限游戏
T
The Blog of Author Tim Ferriss

Aikido Security's Blog

Axios CVE-2026-40175: a critical bug that’s… not exploitable GlassWorm goes native: New Zig dropper infects every IDE on your machine Aikido Attack finds multiple 0-days in Hoppscotch The cybersecurity doomerism around Mythos doesn't match what we see on the ground axios compromised on npm: maintainer account hijacked, RAT deployed Popular telnyx package compromised on PyPI by TeamPCP Aikido × Lovable: Vibe, Fix, Ship CanisterWorm Gets Teeth: TeamPCP's Kubernetes Wiper Targets Iran TeamPCP deploys CanisterWorm on NPM following Trivy compromise Security testing is validating software that no longer exists Aikido Recognized by Frost & Sullivan with the 2026 Customer Value Leadership Award in ASPM GlassWorm Hides a RAT Inside a Malicious Chrome Extension fast-draft Open VSX Extension Compromised by BlokTrooper Glassworm Strikes Popular React Native Phone Number Packages Glassworm Is Back: A New Wave of Invisible Unicode Attacks Hits Hundreds of Repositories How Security Teams Fight Back Against AI-Powered Hackers Introducing Betterleaks, an open source secrets scanner by the author of Gitleaks Trump’s 2026 cybersecurity strategy: From compliance to consequence How does AI pentesting work with compliance? What continuous pentesting actually requires Rare Not Random: Using Token Efficiency for Secrets Scanning Persistent XSS/RCE using WebSockets in Storybook’s dev server Why Determinism Is Still a Necessity in Security WAF vs. RASP vs. ADR Introducing Aikido Infinite: A new model of self-securing software How Aikido secures AI pentesting agents by design Astro Full-Read SSRF via Host Header Injection How to Get Your Board to Care About Security (Before a Breach Forces the Issue) What is Slopsquatting? The AI Package Hallucination Attack Already Happening SvelteSpill: A Cache Deception Bug in SvelteKit + Vercel
Invisible Unicode Malware Strikes OpenVSX, Again
2025-11-06 · via Aikido Security's Blog

Published on:

Nov 6, 2025

About 2 hours ago, we detected another three extensions on Open VSX that have been compromised by the threat actor we’ve been documenting since March, using non-printable characters. Last week, we identified that they had also started compromising GitHub repositories. Today, we are observing another wave of attacks against legitimate Open VSX extensions. 

The three we’ve identified at the time of writing are:

At this time, we've notified Open VSX about our discovery, and are attempting to contact the maintainers as well.

Open VSX October 27th update

This wave comes after a security update published by Open VSX (Eclipse Foundation) on October 27th, acknowledging the attacks that occurred, and outlining the defenses they are planning to put in place:

https://blogs.eclipse.org/post/mika%C3%ABl-barbero/open-vsx-security-update-october-2025

At the time, they believed that the incident was fully contained. However, today's events suggest this is still an ongoing situation we haven’t seen the end of yet, unfortunately. 

Even as we see another wave of this attack, we commend Open VSX for the actions they plan to take. Especially the Automated Scanning of extensions at publication is big, since this is also what we do here at Aikido. However, we cannot scan extensions before they are published. If implemented correctly, this will protect against many attacks in the ecosystem. We applaud this initiative that the Eclipse Foundation is showing. 

An ongoing saga

It’s difficult to defend against something you can’t see, as is the case with this specific attack. But from the very start, we’ve been tracking this threat actor since March, and have done extensive coverage of it. Our previous publications and technical information continues to be relevant, and we will continue to post more information if/as things evolve.

https://www.aikido.dev/blog/youre-invited-delivering-malware-via-google-calendar-invites-and-puas

https://x.com/AikidoSecurity/status/1979207669044122111

https://www.aikido.dev/blog/the-return-of-the-invisible-threat-hidden-pua-unicode-hits-github-repositorties

Last updated on:

Nov 6, 2025

Secure your software now

Start today, for free.

Start for Free

No CC required

4.7/5

Tired of false positives?

Try Aikido like 100k others.

Start Now

Get a personalized walkthrough

Trusted by 100k+ teams

Book Now

Scan your app for IDORs and real attack paths

Trusted by 100k+ teams

Start Scanning

See how AI pentests your app

Trusted by 100k+ teams

Start Testing

April 17, 2026

Vulnerabilities & Threats

Multiple Cross-Site Scripting (XSS) Vulnerabilities in Mailcow

Aikido's AI pentest agent found three XSS vulnerabilities in Mailcow, one of which let unauthenticated attackers take over administrator accounts. All issues have been patched as of version 2026-03b.

#

Vulnerabilities

#

open-source

April 14, 2026

Vulnerabilities & Threats

Axios CVE-2026-40175: a critical bug that’s… not exploitable

Axios CVE-2026-40175 is rated critical, but in real Node.js environments it’s not practically exploitable. Here’s why.

April 8, 2026

Vulnerabilities & Threats

GlassWorm goes native: New Zig dropper infects every IDE on your machine

GlassWorm deploys a Zig-based native dropper hidden within a fake extension, silently compromising VS Code, Cursor, VSCodium, and other IDEs.

#

Malware

Get secure now

Secure your code, cloud, and runtime in one central system.
Find and fix vulnerabilities fast automatically.

No credit card required | Scan results in 32secs.