### [SaassyCode Repackaged: Four New VS Code Extensions and a New Delivery Chain](/content/blog/saassycode-repackaged-four-new-vs-code-extensions-and-a-new-delivery-chain?hsLang=en/index.html)

24 August 2026

### [CodeRelay: 12 VS Code Extensions Disguised as Developer Tools](/content/blog/coderelay-12-vs-code-extensions-disguised-as-developer-tools?hsLang=en/index.html)

4 August 2026

### [Introducing AgentMesh Access Tiers: Building Together, Growing Together](/content/blog/introducing-agentmesh-access-tiers?hsLang=en/index.html)

27 July 2026

### [Lessons Learned from the Hugging Face Security Team](/content/blog/lessons-learned-from-the-hugging-face-security-team?hsLang=en/index.html)

24 July 2026

### Knostic for CISOs

# AI growth, security gaps

Your board wants generative AI everywhere. You see new shadow channels, prompt leaks, and audit risk. Blocking tools isn’t an option, but letting them run wild isn’t either. Use Knostic to stay in control.

## How Knostic Keeps Your Data Secure

#### Scrubs secrets from every LLM response before it leaves the model

#### Tags and tracks sensitive knowledge so you know who saw what, when

#### Simulates prompt-based attacks to expose hidden breach paths

#### Automates remediation to lock down files and folders immediately

## Explore our latest Security Tools

### Test your LLM for oversharing

Ever wonder what your Copilot or internal LLM might accidentally reveal? We help you test for real-world oversharing risks with role-specific prompts that mimic real workplace questions.

### RAG Security Training Simulator

RAG Security Training Simulator is a free, interactive web app that teaches you how to defend AI systems — especially those using Retrieval-Augmented Generation (RAG) — from prompt injection attacks.

## Made for CISOs

You deliver safe, compliant AI adoption, without sounding like the department of “No.”

## Latest research and news

## [SaassyCode Repackaged: Four New VS Code Extensions and a New ...](/content/blog/saassycode-repackaged-four-new-vs-code-extensions-and-a-new-delivery-chain?hsLang=en/index.html)

Knostic identified four VS Code extensions that reuse malicious code from the SaassyCode family. They reveal two distinct forms of reuse: one package was republished almost ...

## [CodeRelay: 12 VS Code Extensions Disguised as Developer Tools](/content/blog/coderelay-12-vs-code-extensions-disguised-as-developer-tools?hsLang=en/index.html)

CodeRelay is the name we gave to a coordinated campaign involving 13 malicious VSIX packages across 12 VS Code extensions. Most look like compiler, code-runner, or “timeline” ...

### What’s next?

#### Want to solve oversharing in your enterprise AI search?   Let's talk.

Knostic is the comprehensive impartial solution to stop data leakage.

Knostic offers visibility into how LLMs expose your data - fast.
