Marketplace that were collectively installed 1.5 million times, exfiltrate developer data to China-based servers.
Two malicious VS Code extensions have exfiltrated code snippets, API keys, and proprietary algorithms from 1.5 million ...
As AI agents code alongside humans, API platforms and DevRel must redesign for machine-first consumption.