Malicious AI coding assistant plugins have been discovered on the JetBrains Marketplace, posing a significant security risk to developers. These plugins, numbering around 15 and with nearly 70,000 downloads, are designed to steal API keys from popular AI services like DeepSeek and OpenAI. The plugins have been active since at least October 2025, and some also include a Chrome extension that records chatbot conversations, further compromising user data. AI
IMPACT Compromised API keys could lead to unauthorized access to AI services, potentially disrupting development workflows and exposing sensitive data.
RANK_REASON The cluster describes malicious plugins distributed through a developer tool marketplace, which is a security issue related to software tools.
Read on Mastodon — fosstodon.org →
AI-generated summary · Google Gemini · from 4 sources. How we write summaries →