1.5M developers hit by VS Code extensions exfiltrating code to China
Two malicious VS Code extensions—ChatGPT 中文版 (1.34M installs) and ChatMoss (151K installs)—function as legitimate AI coding assistants while covertly transmitting entire codebases to Chinese servers. The extensions remain live in the official marketplace. Koi Security disclosed the campaign January 22.