Trending Topics:

A widespread cyberattack targeted well-known Chrome extensions, exposing the personal data of thousands of users

A widespread cyberattack targeted well-known Chrome extensions, compromising at least sixteen extensions and exposing the personal data of thousands of users. The attack targeted extension publishers on the Chrome Web Store through an email phishing campaign and used their credentials to inject malicious code into legitimate extensions to steal user cookies and access tokens.

The first company to fall victim to the campaign was cybersecurity firm Cyberhaven on December 24, allowing a malicious version of the extension to be published.

The phishing message, which purported to be from Google Chrome Web Store Developer Support, attempted to create a false sense of urgency and prompted the recipient to click a link to accept the new policies. The more extensive investigation revealed more extensions, which are suspected to have been compromised, according to the security platform Secure Annex.

These are the following:

  1. AI Assistant – ChatGPT and Gemini for Chrome
  2. Bard AI Chat Extension
  3. GPT 4 Summary with OpenAI
  4. Search Copilot AI Assistant for Chrome
  5. TinaMInd AI Assistant
  6. Wayin AI
  7. VPNCity
  8. Internxt VPN
  9. Vindoz Flex Video Recorder
  10. VidHelper Video Downloader
  11. Bookmark Favicon Changer
  12. Castorus
  13. Uvoice
  14. Reader Mode
  15. Parrot Talks
  16. Primus
  17. Tackker – online keylogger tool
  18. AI Shop Buddy
  19. Sort by Oldest
  20. Rewards Search Automator
  21. ChatGPT Assistant – Smart Search
  22. Keyboard History Recorder
  23. Email Hunter
  24. Visual Effects for Google Meet
  25. Earny – Up to 20% Cash Back

This indicates that this attack was widespread and targeted legitimate browser extensions. Some of the featured extensions have been updated or removed from the Chrome Web Store. However, the fact that the extension has been removed does not mean that the exposure is over as hackers can still access it and exploit user data.

Share.
Leave A Reply

Exit mobile version