National Cyber Warfare Foundation (NCWF)

Threat Actors Exploit VS Code Extensions for Ransomware via GitHub C2


0 user ratings
2025-11-06 12:58:33
milo
Red Team (CNA)

Security researchers have uncovered a sophisticated attack campaign attributed to Kimsuky, the North Korean-backed threat group known for conducting espionage operations against government entities and think tanks. Recent analysis reveals that threat actors are leveraging Visual Studio Code extensions and GitHub as command-and-control infrastructure to deliver multi-stage malware payloads capable of deploying ransomware and conducting […]


The post Threat Actors Exploit VS Code Extensions for Ransomware via GitHub C2 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.



Mayura Kathir

Source: gbHackers
Source Link: https://gbhackers.com/vs-code-extensions/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2025 - National Cyber Warfare Foundation - All rights reserved worldwide.