KEDB #001 — Nx Console Supply Chain Attack: Four Lessons for CISO Teams
In May 2026, the VS Code extension Nx Console 18.95.0 was compromised and stole developer credentials en masse via auto-update; this KEDB entry draws four lessons for CISO teams: uncontrolled extension trust chains, auto-update as a double-edged sword, token hygiene, and build pipeline isolation — with concrete action
- « Previous
- 1
- …
- 13
- 14
- 15





