A large-scale phishing campaign is targeting developers on GitHub by posting fake Visual Studio Code security alerts in Discussions. Thousands of nearly identical posts, created by new or low-activity accounts, claim fabricated CVEs and urge developers to download a malicious 'patched' VS Code from external file-sharing links.
Table of contents
CommentsFake “Critical Vulnerability” Alerts at Scale #Mass Targeting Through GitHub Discussions #External Links Deliver the Payload #Why This Works #What to Watch For #Sort: