VSCode bug exposes GitHub tokens to one-click theft
Hacker News·1mo·ammar2
A vulnerability in Visual Studio Code allows attackers to steal GitHub authentication tokens through a single click, bypassing typical security boundaries. For developers using VSCode, this highlights the risk of token exposure in everyday tools—and underscores why credential management and editor security matter as much as application-level defenses.
Original story
Read the original on Hacker NewsRelated stories

Devtools
Vivix lets you watch JavaScript execute step-by-step in the browserHacker News Show HN·1mo·hlude
Devtools
Capstone: Open-source disassembly framework crosses platforms and architecturesHacker News·1mo·gregsadetsky

Devtools
Open Repair Data Standard aims to unify how repair shops track fixesHacker News·1mo·cassepipe