The Glassworm botnet targeting developers in software supply-chain attacks has been disrupted after researchers took down its resilient command-and-control infrastructure relying on Solana blockchain transactions […]
CrowdStrike, in partnership with Google and the Shadowserver Foundation, has announced the simultaneous disruption of all command-and-control (C2) channels associated with GlassWorm, a persistent software […]
A new wave of the Glassworm campaign is targeting the OpenVSX ecosystem with 73 “sleeper” extensions that turn malicious after an update. Six of the […]
Cybersecurity researchers have flagged dozens of Microsoft Visual Studio Code (VS Code) extensions on the Open VSX repository that are linked to a persistent information-stealing […]
Cybersecurity experts are warning about a new iteration of the ongoing GlassWorm campaign. This version uses a novel Zig dropper to discreetly infect all integrated […]
Cybersecurity experts have identified a new version of the GlassWorm operation, which now uses a complex structure to steal data and install a remote access […]
The GlassWorm malware is being exploited in an active attack that uses compromised GitHub tokens to inject malicious code into hundreds of Python software collections. […]
The GlassWorm supply-chain attack is back with a large, synchronized assault affecting many packages, repositories, and add-ons on GitHub, npm, and VSCode/OpenVSX. Researchers from Aikido, […]
The GlassWorm supply-chain attack has recently expanded, with researchers identifying 72 additional malicious extensions on the Open VSX Registry as of March 2026. This campaign targets developers by abusing trusted extension […]
© Bulletproof Servers. All rights reserved.