Firewall integrations

Fortinet

Elevate the power of your Fortinet Fortigate Firewall using by adding our Intelligence.

Palo Alto

Palo Alto Firewalls can be hardened with our threat intelligence as well.

Sophos XGS

Enhance the Sophos XGS Firewall with our threat intelligence.

OPNsense

Enhance your OPNsense Firewall with our threat intelligence using the native plugin.

SIEM integrations

Splunk

Splunk is a great platform, but without the right Threat Intelligence it's just a log server. Try our threat intelligence today. 

Microsoft Sentinel

One of the most used SIEM solutions should be enriched with the right Intelligence. At Q-Feeds you're at the right place!

Other

Luckily there are many other SIEM vendors whom support 3rd party threat intelligence.

Threat Intelligence Portal

Darkweb Monitoring

Darkweb monitoring is one of our services, not only for threat intelligence but also for you most important assets.

Threat Lookup

With Threat Lookup you get full insights in our IOC database, including full MITRE ATT&K mapping.

External Attack Surface Management

A toolset to check your external facing assets exposed on the internet

Vulnerability Scanner

A comprehensive vulnerability scanner which can scan your infrastructure and web applications

Brand Protection

Protect your brand for look-a-likes and potential phishing attempts

Services

TAXII Feeds & Server Software

TAXII/STIX2.1 standard. Both in form of feeds and server software available

Implementation

Need help with implementations? No worries, we have a strong network of partners who are able to help you.

Solutions

Enrich my SIEM

Elevate the power of your SIEM solution using by adding our Intelligence.

Enrich my Firewall

Firewalls can be hardened with our threat intelligence as well.

Prevent phishing

Enhance your protection against phishing

Achieve compliancy

Achieve compliancy by correlating the best threat intelligence to your logs

Futuristic eye design with circuits and geometric shapes.

Company

About

Read here all about Q-Feeds

News and Updates

Cybersecurity news and updates about us

Publications

All of our media coverage in one place

Become a reseller

Strengthen your portfolio with our comprehensive reseller program

Partner locator

Find our certified partners here

Contact

For all your questions or inquiries

Neural network representation of a human brain

Support

My Account

Access your account and manage your licenses

Downloads & Manuals

On this page you find white papers and manuals

Knowledge base

Our knowledge base full of implementation instructions

Start for free

Start your cyber security intelligence journey here

Abstract geometric wireframe human head

Exposing supply chain vulnerabilities: Serious weaknesses found in widely-used VS Code extensions

Feb 20, 2026 | Threat Intelligence Research

Critical Vulnerabilities Found in Popular VS Code Extensions

Multiple vulnerabilities identified in widely used Visual Studio Code extensions present significant security risks, potentially affecting over 125 million installations. The flaws, which remain unpatched for several extensions, could allow remote attackers to exfiltrate files and execute arbitrary code within developer environments.

Recent research revealed three major vulnerabilities: CVE-2025-65717 in the Live Server extension, which enables local file exfiltration via malicious webpages; CVE-2025-65716 in Markdown Preview Enhanced that facilitates arbitrary JavaScript execution through crafted Markdown files; and CVE-2025-65715 in Code Runner, allowing attackers to execute unauthorized commands by manipulating configuration files. A separate issue in Microsoft Live Preview has also been addressed silently but lacks a CVE identifier. All these vulnerabilities could lead to sensitive data theft and unauthorized code execution.

These extensions operate with elevated privileges and extensive access to developer systems, creating a fertile ground for exploitation. Once compromised, attackers can execute commands, delete files, and gain persistent access to workstations. The implications extend beyond individual workstations, posing risks to broader organizational networks due to potential lateral movement through compromised systems.

This situation matters significantly as it illustrates the increasing threat landscape within modern development workflows. With developers often unaware of these vulnerabilities, malicious actors may easily exploit them to compromise entire systems, highlighting the need for robust security measures during software development.

Defenders should implement several countermeasures such as avoiding untrusted HTML files while localhost servers are active, limiting server operations, and applying only trusted extensions. Regular monitoring and patch management are essential to mitigate these risks and protect sensitive development environments.

No specific Indicators of Compromise (IOCs) were provided in the article.

Click here for the full article

Try our Intelligence today!

Streamline your security operations with a free Q-Feeds trial and see the difference.

Other articles