VS Code Marketplace

Nexus TerminalM279

eaa5d348-78ec-55d2-9be2-972aec1c1594 | v2.8.214

Marketplace listing not found

Our last marketplace check could not find this listing in VS Code. It may have been removed or delisted. Existing installs may still run, but verify the publisher and package source before installing or updating.

Not found on 2 weeks ago
62/ 100
MEDIUM risk
Risk verdict
Review before use

Score-based assessment (medium risk, 62/100). No analyst review available.

Analysis record

Analysed
4 weeks ago
Version
v2.8.214
Artifact
SHA256 CB8…E9A
Source
Findings (non-IoC)

Evidence ledger

Ranked by severity · findings with a source location link to the code viewer

139 detail rows
Showing 25 of 28 · highest severity first

YARA Rule Matches

13 rules
SeverityRuleHitsFilesMetadata
LOWpostinstall file download 10
readme.mddist/extension.jsdist/native/network-server-daemon/linux-arm64/nexus-network-server-daemon +7 more
-
LOWSQLInjection 1
dist/extension.js
-
LOWNoUseWeakRandom 3
dist/services/networkServers/networkServerDaemon.jspatches/dhcp+0.2.20.patchdist/extension.js
-
LOWpostinstall crypto operations 11
changelog.mddist/services/serial/serialSidecarWorker.jsSECURITY.md +8 more
-
LOWpostinstall file manipulation 14
patches/dhcp+0.2.20.patchdist/native/local-pty/linux-arm64/nexus-local-ptyexamples/scripts/07-complete-procedure.js +11 more
-
LOWpostinstall system command 20
dist/native/network-server-daemon/linux-arm64/nexus-network-server-daemonchangelog.mdextension.vsixmanifest +17 more
-
LOWpostinstall registry modification 9
changelog.mdexamples/scripts/06-interactive-flow.jsdist/native/network-server-daemon/linux-x64/nexus-network-server-daemon +6 more
-
LOWpostinstall obfuscation 6
dist/services/scripts/assets/nexus-scripts.d.tsdist/native/local-pty/linux-x64/nexus-local-ptydist/services/scripts/scriptWorker.js +3 more
-
LOWpostinstall network communication 26
patches/dhcp+0.2.20.patchexamples/scripts/03-while-loop.jsexamples/scripts/06-interactive-flow.js +23 more
-
LOWUsingShellInterpreterWhenExecutingOSCommands 1
dist/extension.js
-
LOWcredential ssh keys 1
dist/extension.js
-
LOWcredential env files 3
dist/services/networkServers/networkServerDaemon.jsdist/webExtension.jsdist/extension.js
-
LOWpostinstall persistence mechanism 6
readme.mdchangelog.mdpackage.json +3 more
-

Network Indicators

Concrete URLs, domains, IPs, emails, and hashes extracted from the analyzed artifact.

283 total
...

Network indicators are queued for lazy loading

Scroll this section into view to load the detailed rows.

Publisher Evidence

Limited evidence

PRODM279DVT

Publisher identity, store signals, distribution reach, and warning signals used for context. Treat this as supporting evidence, not a clean bill of health.

30
Noisy-finding weight
x1.00
Publisher domain
No domain
Missing
Store verification signal
Not exposed
Not exposed
Extension portfolio
8
Portfolio

12 evidence rows available.

Finding Categories

22
Network
283
IoC Indicators

YARA Rules Matched

13 rules(111 hits)
postinstall file download SQLInjection NoUseWeakRandom postinstall crypto operations postinstall file manipulation postinstall system command postinstall registry modification postinstall obfuscation postinstall network communication UsingShellInterpreterWhenExecutingOSCommands credential ssh keys credential env files postinstall persistence mechanism

Security Analysis Summary

Security Analysis Overview

Nexus TerminalM279 is a Visual Studio Code Marketplace extension published by PRODM279DVT. Version 2.8.214 has been analyzed by the Risky Plugins security platform, receiving a risk score of 61.55/100 (MEDIUM risk) based on 422 security findings.

Risk Assessment

This extension presents moderate security risk. Several findings were detected that may warrant attention. Users should carefully review the permissions and findings before installation.

Findings Breakdown

  • Medium: 305 finding(s)
  • Low: 117 finding(s)

What Was Analyzed

The security assessment covers multiple analysis categories:

  • Malware Detection: YARA rule matching against 2,400+ malware signatures
  • Secret Detection: Scanning for exposed API keys, tokens, and credentials
  • Static Analysis: Code-level security analysis for common vulnerability patterns
  • Network Analysis: Detection of suspicious network communications and endpoints
  • Obfuscation Detection: Identification of code obfuscation techniques

Developer Information

Nexus TerminalM279 is published by PRODM279DVT on the Visual Studio Code Marketplace marketplace.

Recommendation

This extension is not recommended for installation without thorough manual review. Consider alternatives with lower risk scores, or contact the developer to address the identified security concerns.

About This Extension

Full SSH + serial + telnet + port-forwarding client inside VS Code — no 300MB Remote-SSH agent on the box. Built for network and infra engineers: SSH, serial and telnet consoles, jump-host chains, SFTP, tunnels, expect/send macros with prompted variables, and a JS scripting engine, all in one sideba

Frequently Asked Questions