Google removed 500 malicious Chrome extensions from its Web Store after they found to inject malicious ads and siphon off user browsing data to servers under the control of attackers. . These extensions were part of a malvertising and ad-fraud campaign that's been operating at least since January 2019, although evidence points out the possibility that the actor behind the scheme may have been active since 2017. The findings come as part of a joint investigation by security researcher Jamila Kaya and Cisco-owned Duo Security, which unearthed 70 Chrome Extensions with over 1.7 million installations. The link for this article located at The Hacker News is no longer available. . Malicious Chrome extensions were part of an extensive ad-fraud campaign impacting 1.7 million users. Learn more here.. google, removed, malicious, chrome, extensions, store, found, inject, malicio. . LinuxSecurity.com Team
A Google Chrome extension named Shitcoin Wallet is stealing passwords and wallet private keys, security researcher says. Learn more about this malicious extension: . A Google Chrome extension was caught injecting JavaScript code on web pages to steal passwords and private keys from cryptocurrency wallets and cryptocurrency portals. The extension is named Shitcoin Wallet (Chrome extension ID: ckkgmccefffnbbalkmbbgebbojjogffn), and was launched last month, on December 9. According to an introductory blog post, Shitcoin Wallet lets users manage Ether (ETH) coins, but also Ethereum ERC20-based tokens -- tokens usually issued for ICOs ( initial coin offerings ). The link for this article located at ZDNet is no longer available. . A browser add-on was discovered exfiltrating login credentials and cryptographic keys via code injection on websites.. Chrome Extension, Crypto Theft, JavaScript Attack, Security Breach. . LinuxSecurity.com Team
Computer users are being reminded once again to take care over the browser extensions they install after security experts discovered a hacking campaign that has been targeting academic institutions since at least May 2018.. Researchers at Netscout have warned of a state-sponsored attack dubbed “Stolen Pencil” that is though to originate from North Korea. The state-sponsored attack is relatively unusual for its use a malicious Google Chrome browser extension. The link for this article located at Tripwire is no longer available. . An operation classified as "Phantom Quill" deploys a harmful Firefox add-on aimed at researchers and scholars since 2019.. Malicious Extension, Chrome Hacking, Cyber Threats. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.