Several Chrome Extensions Injected With Malicious Codes
Date: December 30, 2024
A new hacker trend has emerged where several Chrome extensions were injected with malicious codes for a phishing campaign against Ad and AI platforms.
A recent analysis by the cybersecurity company CyberHaven revealed that a sophisticated phishing campaign compromised several Google Chrome extensions. As mentioned in the blog post by the company, the hackers gained access to the admin accounts of these extensions and added malicious code to them.
These attacks happened in December and in a gradually phased manner, targeting logins specific to social media advertising and AI platforms. A few other extensions were also impacted, tracing back to mid-December, including ParrotTalks, Uvoice, and VPNCity.
CyberHaven has already notified its customers as soon as it identified the phishing attack. The company advised changing passwords and other credentials in an urgent email sent to all internal employees and customers. After a thorough analysis of the nature of the attack, the cybersecurity team discovered that the scammers targeted Facebook Ad users.
The attackers tried to steal data such as access tokens, user IDs, and other credentials, including their cookies. “After successfully sending all the data to the [Command & Control] server, the Facebook user ID is saved to browser storage. That user ID is then used in mouse click events to help attackers with 2FA on their side if that was needed,” said CyberHaven’s analysis.
The attack was first detected on December 25, and the company quickly resolved the issue by removing the malicious version of the extension in less than an hour. The company has also pushed a cleaner version of the extension in its latest update, ensuring such attacks do not compromise their client data again.
The recent attack signifies the risk of sharing your personal information online, which has almost become inevitable for any business or individual to access services, products, and other useful online assets.
By Arpit Dubey
Arpit is a dreamer, wanderer, and tech nerd who loves to jot down tech musings and updates. With a knack for crafting compelling narratives, Arpit has a sharp specialization in everything: from Predictive Analytics to Game Development, along with artificial intelligence (AI), Cloud Computing, IoT, and let’s not forget SaaS, healthcare, and more. Arpit crafts content that’s as strategic as it is compelling. With a Logician's mind, he is always chasing sunrises and tech advancements while secretly preparing for the robot uprising.
// Recommended
Pinterest Follows Amazon in Layoffs Trend, Shares Fall by 9%
AI-driven restructuring fuels Pinterest layoffs, mirroring Amazon’s strategy, as investors react sharply and question short-term growth and advertising momentum.
Clawdbot Rebrands to "Moltbot" After Anthropic Trademark Pressure: The Viral AI Agent That’s Selling Mac Minis
Clawdbot is now Moltbot. The open-source AI agent was renamed after Anthropic cited trademark concerns regarding its similarity to their Claude models.
Amazon Bungles 'Project Dawn' Layoff Launch With Premature Internal Email Leak
"Project Dawn" leaks trigger widespread panic as an accidental email leaves thousands of Amazon employees bracing for a corporate cull.
OpenAI Launches Prism, an AI-Native Workspace to Shake Up Scientific Research
Prism transforms the scientific workflow by automating LaTeX, citing literature, and turning raw research into publication-ready papers with GPT-5.2 precision.
Have newsworthy information in tech we can share with our community?
