Recognized in the Open VSX Security Hall of Fame The CISO's Guide to IDE Security in 2026 The Malware Factory: GLASSWORM Forensics in Open VSX Weaponizing Empty Github Repositories with Releases The Ghost in the Marketplace Weaponizing Extension Packs with PackRAT Yeeth - 2025 Year in Review Secret Scanning with Aho-Corasick A Deeper Look at RustImplant SleepyDuck Evolution WhiteCobra Beginnings Recognized in the Open VSX Security Hall of Fame The CISO's Guide to IDE Security in 2026 The Malware Factory: GLASSWORM Forensics in Open VSX Weaponizing Empty Github Repositories with Releases The Ghost in the Marketplace Weaponizing Extension Packs with PackRAT Yeeth - 2025 Year in Review Secret Scanning with Aho-Corasick A Deeper Look at RustImplant SleepyDuck Evolution WhiteCobra Beginnings
Latest Briefing

All Briefings

The CISO's Guide to IDE Security in 2026 Security Research
May 21, 2026

The CISO's Guide to IDE Security in 2026

What developer-environment threats look like in 2026, and the controls security leaders should put in place. Written by Yeeth Security fr...

Read Briefing
The Malware Factory: GLASSWORM Forensics in Open VSX Threat Intel
Apr 28, 2026

The Malware Factory: GLASSWORM Forensics in Open VSX

Sixteen extensions in 48 hours. All share one author. A forensic walkthrough of how Bane, Yeeth Security's threat-intelligence knowledge ...

Read Briefing
Weaponizing Empty Github Repositories with Releases Threat Intel
Apr 6, 2026

Weaponizing Empty Github Repositories with Releases

A campaign of VS Code extensions using GitHub releases as a payload delivery mechanism — and blockchain RPCs as command-and-control

Read Briefing
The Ghost in the Marketplace Threat Intel
Mar 20, 2026

The Ghost in the Marketplace

Analyzing a Massive 174-Account Surge on Open VSX

Read Briefing
Weaponizing Extension Packs with PackRAT Threat Intel
Mar 13, 2026

Weaponizing Extension Packs with PackRAT

Dissecting a Downloader Abusing Extension Packs for Stealthy Distribution

Read Briefing
Yeeth - 2025 Year in Review Year in Review
Dec 31, 2025

Yeeth - 2025 Year in Review

A look back at what we did and where we are going.

Read Briefing
Secret Scanning with Aho-Corasick Security Research
Dec 28, 2025

Secret Scanning with Aho-Corasick

Why scalable secret detection is a systems problem that matters

Read Briefing
A Deeper Look at RustImplant Malware Analysis
Dec 5, 2025

A Deeper Look at RustImplant

Dissecting an Obfuscated Downloader with Anti-analysis Guardrails

Read Briefing
SleepyDuck Evolution Malware Analysis
Nov 10, 2025

SleepyDuck Evolution

Technical analysis a new iteration of SleepyDuck, a tiny loader that behaves like a backdoor.

Read Briefing
WhiteCobra Beginnings Malware Analysis
Sep 3, 2025

WhiteCobra Beginnings

Technical analysis of one of the early WhiteCobra samples in the wild.

Read Briefing