GlassWorm Malware Returns to Shatter Developer Ecosystems
ID: af82e8b7-d32c-51d4-a143-2f8a501f4a0c
STIX ID: report--af82e8b7-d32c-51d4-a143-2f8a501f4a0c
Feed Name: Dark Reading
Threat Score
Researchers reported a GlassWorm supply-chain campaign in which four legitimate Open VSX components were Trojanized (likely via a leaked token or account compromise) and collectively amassed over 22,000 downloads; the payloads acted as infostealers harvesting developer credentials, browser and wallet data, and other sensitive files, leveraging blockchain-based C2 and staged loaders, and the report includes IOCs and mitigation steps such as credential rotation and artifact removal.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
