#vscode

DansLeRuSH ᴱᶰdanslerush@floss.social
2026-02-05

2 bad ideas here : #Microslop #VSCode AND #Snap 🤫

« A handful of Linux-based developers have found large amounts of supposedly deleted data on their computers, in some cases consuming hundreds of gigabytes of storage.

The reason for this is Snap – a #Linux application packaging format – creates a local Trash folder for each VS Code version, one that's separate from the system-managed Trash, according to a VS Code bug report dating back to 2024-11-11. »

theregister.com/2026/02/04/vs_

#Ubuntu

Yeah, see this it exactly where we need to go. It's not the final solution but it is a barrier to entry at least. Just like publishing to an app store (which I realize isn't perfect).

thehackernews.com/2026/02/ecli

#vscode #extensions

2026-02-04

VS Code version 1.109 is now available

mander.xyz/post/46853614

2026-02-04

The Eclipse Foundation is moving Open VSX Registry security upstream by introducing pre-publish extension verification, transitioning from reactive incident response to proactive risk reduction.

Checks are designed to flag impersonation, exposed secrets, and known malicious patterns, with suspicious submissions quarantined for review. The phased rollout aims to minimize false positives while improving ecosystem trust.

This aligns with broader trends in securing developer tooling and shared infrastructure against supply-chain abuse.

Source: thehackernews.com/2026/02/ecli

💬 How effective do you expect pre-publish controls to be in open-source ecosystems?
Follow @technadu for objective infosec reporting.

#Infosec #SupplyChainSecurity #OpenSourceSecurity #DevSecOps #VSCode #TechNadu

Eclipse Foundation Mandates Pre-Publish Security Checks for Open VSX Extensions
h o ʍ l e t thomlett@mamot.fr
2026-02-04

→ Malicious VS Code AI Extensions Harvesting Code from 1.5M Devs
koi.ai/blog/maliciouscorgi-the

“Our risk engine has identified two #VSCode extensions, a campaign we're calling MaliciousCorgi - 1.5 million combined installs, both live in the marketplace right now - that work exactly as promised. They answer your #coding questions. They explain your errors. They also #capture every file you open, every edit you make, and send it all to servers in #China. No consent. No disclosure.”

#AI #file #send

[^BgTA^] :verified: :opensuse:raul@mastodon.in4matics.cat
2026-02-04

RE: mastodon.social/@itsfoss/11601

⚠️ Si uses VS Code via Snap a Linux, vigila el teu disc! 🖥️💾

S'ha detectat un error on els fitxers eliminats no van a la paperera del sistema, sinó a una de tancada dins del Snap que no es buida mai. S'han vist casos de fins a 200 GB de brossa acumulada! 😱

📂 La trobaràs a: ~/snap/code/current/.local/share/Trash

Es recomana passar a la versió .deb o Flatpak per evitar-ho. 🛠️

Més info: itsfoss.com/news/vscode-snap-d

#VSCode #Snap #Linux #Ubuntu #FOSS #OpenSource #DiskSpace #VSCodium

2026-02-04

⚡ "10 Tiny Steps to #PowerShell #Productivity Mastery" by @stephanevg.bsky.social@bsky.brid.gy was a whirlwind of wisdom: 📚 Learn broadly 🛠️ Tune VS Code 🔁 Use Git & build processes 🧠 Embrace soft skills & focus 🤝 Share, grow, repeat 🎟️ psconf.eu #PSConfEU #DevEx #VSCode

- YouTube

Like, look at this shit lol. It's always the browser/electron shit that's hoggggging my memory on #Linux like #Firefox and #VSCode. Idk how these shitty apps could survive just fine on #macOS. Anyway, as shitty as memory management can be on Linux, if even that, this is still kind of an improvement where it freezes for a bit and then terminates the apps hogging the memory - not pretty, disruptive maybe and can make u lose shit u need, but works. Previously, on Linux, shit would just freeze indefinitely and you'd need a painful, hard reboot to fix it.

Linux Kernel error notification saying 'Memory Shortage Avoided' by terminating Firefox.
2026-02-03

Writing a post on all things wrong with #VSCode. Any points I might be missing?

#Programming #Emacs #TextEditor

Sybren A. Stüvelsybren@fosstodon.org
2026-02-03

Why oh why does VSCode on Linux manage to render these two + signs so differently?

And the differences are even different depending on the surrounding code, or the indentation level, or whatnot. It's not always the same.

#vscode #fonts #linux #rendering #ugh

Screenshot of VSCode, reading "ize; a++, cp"

The two + signs are slightly different, making it appear as if they're ever so slightly rotated towards each other.

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst