GlassWorm Evolves: Rust‑Compiled Binaries Hijack VS Code Marketplace
Koi Research has uncovered a new wave of the GlassWorm campaign that replaces the old Unicode‑based payload with native Rust binaries, targeting both OpenVSX and Microsoft’s official VS Code marketplace. The shift to compiled code makes detection harder and signals a new level of sophistication in supply‑chain attacks.