Malicious Google Chrome and Edge extensions downloaded more than 2 million times – here’s how to stay safe from being tracked online




  • Koi Security researchers found almost two dozen browser add-ons spying on users
  • The add-ons were tracking visited sites and communicating with remote C2 infrastructure
  • Users were likely compromised along the way

Many Google Chrome and Microsoft Edge browser add-ons, including several prominent products, were found to be spying on users and communicating with a third-party server, in what appears to be a supply-chain attack with millions of victims.

Security researchers from Koi Security were recently looking into a seemingly benign Chrome add-on called “Color Picker, Eyedropper — Geco colorpick” which allows users to quickly identify and copy color codes from any point within their browser.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *