Checkmarx identified a supply chain security incident involving malicious versions of two plugins distributed via OpenVSX; only organizations that downloaded and ran these specific plugins between certain times are potentially impacted. Updated plugin versions have been released to mitigate the issue, and Checkmarx advises rotating secrets and reviewing GitHub Actions for suspicious indicators.
Read the full article at Malware Analysis, News and Indicators - Latest topics
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.


![[AINews] Apple's War on Slop](https://media.nemati.ai/media/blog/images/articles/2284298099ac4ae7.webp)


