+TRS-80 MVC Posted April 15 MVC Share Posted April 15 More than 100 malicious extensions in the official Chrome Web Store are attempting to steal Google OAuth2 Bearer tokens, deploy backdoors, and carry out ad fraud. Researchers at application security company Socket discovered that the malicious extensions are part of a coordinated campaign that uses the same command-and-control (C2) infrastructure. The threat actor published the extensions under five distinct publisher identities in multiple categories: Telegram sidebar clients, slot machine and Keno games, YouTube and TikTok enhancers, a text translation tool, and utilities. https://www.bleepingcomputer.com/news/security/over-100-chrome-extensions-in-web-store-target-users-accounts-and-data/ goretsky 1 Share Link to comment https://www.neowin.net/forum/topic/1465474-over-100-chrome-web-store-extensions-steal-user-accounts-data/ Share on other sites More sharing options...
+Warwagon MVC Posted April 15 MVC Share Posted April 15 I looked through the list, on another site. most of them where just games, in the form of extensions. Who the heck installs game via chrome extension. Link to comment https://www.neowin.net/forum/topic/1465474-over-100-chrome-web-store-extensions-steal-user-accounts-data/#findComment-599051973 Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now