Malicious VSCode extensions with millions of installs discovered - eviltoast
  • 30p87@feddit.de
    link
    fedilink
    arrow-up
    16
    arrow-down
    3
    ·
    5 months ago

    But why can a theme make web requests?!

    Why can a Word or Excel file execute shell code? Why does M$ SQL Server have xp_cmdshell?

    Because we live in a broken world and nothing matters.

    Because devs chose to live in this part of the world, dictated by M$ and other large companies, who just don’t care.