vs-code-vulnerability

Preview image for a blog post

One-Click GitHub Dev Attack: Unmasking the OAuth Token Theft Vulnerability in VS Code

Unmasking a critical one-click attack via VS Code and GitHub.dev that allows attackers to steal full GitHub OAuth tokens.