Cybersecurity researchers have revealed information about a malware campaign that uses the Microsoft Visual Studio Code (VS Code) extension ecosystem to target software engineers with a new information stealer named Evelyn Stealer.
The malware is meant to steal private data, such as cryptocurrency-related information and developer credentials. According to an investigation released on Monday by Trend Micro, compromised developer environments can potentially be leveraged as entry points into larger corporate systems.
It further stated that the activity is intended to identify companies that have access to production systems, cloud resources, or digital assets, as well as software development teams that depend on Visual Studio Code and third-party extensions.
It’s important to note that Koi Security first reported on the campaign last month when information about three VS Code extensions—BigBlack.bitcoin-black, BigBlack.codo-ai, and BigBlack.mrbigblacktheme—came to light. These extensions eventually dropped a malicious downloader DLL read more about Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
