thehackernews.com 6/8/2026, 7:50:39 AM · external

VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks

VS Code Adds 2-Hour Extension Auto-Update Delay to Limit Supply Chain Attacks
CyberSIXT Evidence Panel Source marked as original reporting

VS Code has introduced a two-hour delay for automatic updates of extensions in response to increasing concerns about supply chain attacks and malware risks. This measure aims to provide additional time for testing and vetting of updates before they are deployed, thereby enhancing security. The update is part of a broader industry trend towards improving protection against cyber threats, particularly those exploiting vulnerabilities in software supply chains.

View full article

Article by CyberSIXT