Malicious VSCode Extension Launches Multi-Stage Attack Chain with Anivia Loader and OctoRAT
hunt.io | blog | #supply-chain | #attack-chains | #malware | #vscode | #rat | #octorat | #anivia | #malicious-extension
Summary
A fake 'prettier-vscode-plus' extension on the official VSCode Marketplace delivered the Anivia loader and OctoRAT—a RAT with 70+ commands—in a supply-chain attack that rotated payloads.
- Published
- Collected
Skip to content