Self Spreading worms in AI!
28 Oct 2025
A self-spreading malware called GlassWorm has infected OpenVSX and one VSCode extension (cline-ai-main.cline-ai-agent v3.1.3), enabling it to propagate across systems and steal data. This supply chain attack highlights vulnerabilities in extension ecosystems and raises concerns about security in AI-driven development workflows.
I kept hearing in my head "Elf spreading worm" for some reason.
I kept hearing in my head "Elf spreading worm" for some reason.
Aj Wilson
Quality Engineering Manager II / Technical Development Lead / Chief Quality Officer
She/Her
Intellectual (non practicing)| Neurospicy | UN Women Delegate | Above all Curious & Challenging - Quality and Tech Leadership for 20+ years.
Sign in
to comment
With servers in >250 cities around the world, check your site for localization problems, broken GDPR banners, etc.
Explore MoT
See where AI genuinely helps, where it doesn’t, and how testers can stay firmly in control
Mitigate security risks by building simple security testing techniques into your daily routine
Into the MoTaverse is a podcast by Ministry of Testing, hosted by Rosie Sherry, exploring the people, insights, and systems shaping quality in modern software teams.