Bleepingcomputer Ransomvibe Ransomware Discovered in VS Code Extensions
Article Content
Browse articles
A strain of ransomware behavior, referred to as Ransomvibe, has been embedded in Visual Studio Code extensions. The malicious extension, named susvsex, was published by an actor identified as 'suspublisher18' and openly advertised its ransomware capabilities. Researcher John Tuckner from Secure Annex highlighted the lack of sophistication in the code, which included obvious signs of being AI-generated.
Ask AI about this cluster
Answers cite the sources they use
Updated 205d ago How this analysis works
More articles in this cluster (3)
Following this threat?
Track Promptlock and Ransomvibe in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
AI Phishing Threatens School Cybersecurity Schools face increasing risks from AI-driven phishing attacks, including deepfake voice notes and malware like PromptLock that evolves with each execution. With an average of 2,739 edtech tools per district, the reliance on technology makes schools vulnerable to sophisticated scams. Recent surveys indicate that only…
Citrix NetScaler Critical Vulnerabilities Exploited: Urgent Patching Required Citrix NetScaler ADC and Gateway products are affected by critical vulnerabilities CVE-2026-88771 and CVE-2026-88772, both assigned a CVSS score of 9.5. The Cybersecurity and Infrastructure Security Agency (CISA) added these CVEs to its Known Exploited Vulnerabilities catalog on September 27, 2026, and mandated…