Security teams have spent years scrutinizing software dependencies, package repositories and build pipelines. Bloom Security‘s latest research suggests that another part of the software supply chain deserves closer attention: the extensions developers install inside their IDEs. The company’s “E...
Source: [TNW](https://thenextweb.com/news/bloom-security-extension-resurrection-vscode-supply-chain)