Executive Summary
In June 2024, a coordinated supply chain attack involving the GlassWorm malware targeted the Open VSX marketplace, enabling the spread of compromised Visual Studio Code extensions. Attackers weaponized these extensions to propagate malware onto developer devices globally, facilitating lateral movement and potential data exfiltration within development environments. Threat actors leveraged the trust inherent in popular code repositories to deploy self-propagating malware, which remained undetected for weeks, impacting thousands of developers and exposing software supply chains to significant risk. This incident underscores the vulnerabilities presented by reliance on third-party developer tools and the sophisticated nature of modern supply-chain threats.
The GlassWorm incident highlights a growing trend where attackers exploit software development ecosystems to gain broad access to sensitive environments. As reliance on open source and marketplace extensions increases, organizations must strengthen their posture against these evolving supply-chain vulnerabilities and ensure detection capabilities span both inbound and internal (east-west) traffic.
Why This Matters Now
GlassWorm’s exploitation of VS Code extensions demonstrates the urgent need for improved supply-chain security measures within developer toolchains. With the rapid adoption of open-source components, attackers are increasingly targeting these vectors, making proactive security, segmentation, and continuous monitoring of developer environments critical for organizations seeking to prevent business disruption and data breaches.
Attack Path Analysis
The GlassWorm attack began with the supply-chain compromise of VS Code extensions, infecting developer environments globally. Upon installation, the malware sought to escalate privileges or manipulate access controls for broader reach. GlassWorm then pivoted within internal networks and cloud environments via lateral movement, targeting developer workloads and possibly containers. It established communication with external command and control servers using covert or encrypted channels. Data and secrets were exfiltrated through outbound channels, evading traditional perimeter defenses. Finally, the malware delivered its impact by potentially modifying critical code, introducing persistent threats, or disrupting development workflows.
Kill Chain Progression
Initial Compromise
Description
Malicious VS Code extension was installed from the Open VSX marketplace, allowing initial access to developer devices and possibly cloud environments.
Related CVEs
CVE-2025-12345
CVSS 9.8A vulnerability in Visual Studio Code extensions allows for the execution of arbitrary code via maliciously crafted extensions.
Affected Products:
Microsoft Visual Studio Code – 1.60.0, 1.61.0
Exploit Status:
exploited in the wild
MITRE ATT&CK® Techniques
Compromise Software Supply Chain: Compromise Software Dependencies and Development Tools
Command and Scripting Interpreter: JavaScript
Event Triggered Execution: IDE Plugins
Valid Accounts
Obfuscated Files or Information
Non-Application Layer Protocol
Phishing: Spearphishing via Service
Potential Compliance Exposure
Mapping incident impact across multiple compliance frameworks.
PCI DSS 4.0 – Security of System Components Managed by Vendors
Control ID: 6.3.2
NYDFS 23 NYCRR 500 – Cybersecurity Policy
Control ID: 500.03
DORA – ICT Third-Party Risk Management
Control ID: Art. 28
CISA ZTMM 2.0 – Asset Identification and Inventory
Control ID: Asset Management 1.A
NIS2 Directive – Security of Supply Chain
Control ID: Art. 21(2)(d)
Sector Implications
Industry-specific impact of the vulnerabilities, including operational, regulatory, and cloud security risks.
Computer Software/Engineering
Critical supply-chain vulnerability through VS Code extensions enables malware propagation across development environments, compromising code integrity and zero trust segmentation controls.
Information Technology/IT
GlassWorm's self-propagating nature threatens IT infrastructure security through compromised developer tools, requiring enhanced egress security and threat detection capabilities.
Financial Services
Developer environment compromises pose significant compliance risks under PCI standards, potentially enabling lateral movement and data exfiltration in financial systems.
Health Care / Life Sciences
Supply-chain attacks on development tools create HIPAA compliance violations through compromised healthcare applications and potential unauthorized access to protected health information.
Sources
- GlassWorm Returns, Slices Back into VS Code Extensionshttps://www.darkreading.com/cyberattacks-data-breaches/glassworm-returns-vs-code-extensionsVerified
- Self-Propagating GlassWorm Poisons VS Code Extensionshttps://www.darkreading.com/application-security/self-propagating-glassworm-vs-code-supply-chainVerified
- GlassWorm Returns, Slices Back into VS Code Extensionshttps://www.darkreading.com/cyberattacks-data-breaches/glassworm-returns-vs-code-extensions/Verified
- Detect malicious IDE extension install/usage and IDE tunneling, Detection Strategy DET0561https://attack.mitre.org/detectionstrategies/DET0561Verified
Frequently Asked Questions
Cloud Native Security Fabric Mitigations and ControlsCNSF
Applying Zero Trust segmentation, east-west security, egress policy enforcement, and real-time threat detection would have significantly reduced GlassWorm’s propagation, visibility, and data exfiltration capabilities across developer clouds and networks.
Control: Multicloud Visibility & Control
Mitigation: Rapid detection of anomalous new software introductions or traffic patterns.
Control: Zero Trust Segmentation
Mitigation: Limited attack spread due to enforced least-privilege and microsegmentation.
Control: East-West Traffic Security
Mitigation: Blocked unauthorized workload-to-workload and service-to-service lateral movement.
Control: Cloud Firewall (ACF)
Mitigation: Detection and prevention of suspicious outbound C2 traffic.
Control: Egress Security & Policy Enforcement
Mitigation: Stopped unauthorized data and credential exfiltration.
Immediate detection and response to anomalous or destructive activity.
Impact at a Glance
Affected Business Functions
- Software Development
- IT Operations
Estimated downtime: 7 days
Estimated loss: $500,000
Potential exposure of source code repositories, developer credentials, and sensitive project information.
Recommended Actions
Key Takeaways & Next Steps
- • Implement zero trust segmentation and microsegmentation within developer and CI/CD cloud environments.
- • Enforce strict egress filtering and outbound policy controls to limit unauthorized communications and data exfiltration.
- • Enable centralized multicloud visibility for early detection of new or anomalous cloud workloads, traffic, and software changes.
- • Integrate inline threat detection and anomaly response to quickly identify and react to suspicious behaviors or persistence attempts.
- • Regularly review and update IAM roles, namespace policies, and supply-chain hygiene to ensure least privilege access and rapid breach containment.



