Flaws in four popular VS Code extensions left 128 million installs open to attack

Critical and high-severity vulnerabilities were found in four widely used Visual Studio Code extensions with a combined 128 million downloads, exposing developers to file theft, remote code execution, and local network reconnaissance. Application security company OX Security published the findings this week, saying it had begun notifying vendors in June 2025 but received no response…

Read More

Is AI killing open source?

Open source has never been about a sprawling community of contributors. Not in the way we’ve imagined it, anyway. Most of the software we all depend on is maintained by a tiny core of people, often just one or two, doing unpaid work that companies use as essential infrastructure, as recently covered by Brookings research….

Read More

How to advance a tech career without managing

Technical mastery once guaranteed advancement. For engineers, data scientists, designers, and other experts, the career ladder used to be clear: learn deeply, deliver reliably, and get promoted. But at some point, progress begins to feel less like learning new tools and more like learning new ways to influence. Every senior individual contributor eventually faces the…

Read More