A single mistake cost one user nearly half a million dollars, highlighting how scammers are escalating phishing attacks.
Researchers found malicious VS Code extensions and Go, npm, and Rust packages stealing developer data via hidden payloads and exfiltration.