Hackers injected malicious code into several Chrome extensions in recent attack

Hackers were reportedly able to modify several Chrome extensions with malicious code this month after gaining access to admin accounts through a phishing campaign. The cybersecurity company Cyberhaven shared in a blog post this weekend that its Chrome extension was compromised on December 24 in an attack that appeared to be “targeting logins to specific social media advertising and AI platforms.” A few other extensions were hit as well, going back to mid-December, Reuters reported. According to Nudge Security’s Jaime Blasco, that includes ParrotTalks, Uvoice and VPNCity.

Cyberhaven notified its customers on December 26 in an email seen by TechCrunch, which advised them to revoke and rotate their passwords and other credentials. The company’s initial investigation of the incident found that the malicious extension targeted Facebook Ads users, with a goal of stealing data such as access tokens, user IDs and other account information, along with cookies. The code also added a mouse click listener. “After successfully sending all the data to the [Command & Control] server, the Facebook user ID is saved to browser storage,” Cyberhaven said in its analysis. “That user ID is then used in mouse click events to help attackers with 2FA on their side if that was needed.”

Cyberhaven said it first detected the breach on December 25 and was able to remove the malicious version of the extension within an hour. It’s since pushed out a clean version.

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/hackers-injected-malicious-code-into-several-chrome-extensions-in-recent-attack-220648155.html?src=rss https://www.engadget.com/cybersecurity/hackers-injected-malicious-code-into-several-chrome-extensions-in-recent-attack-220648155.html?src=rss
Creato 17d | 29 dic 2024, 23:10:11


Accedi per aggiungere un commento

Altri post in questo gruppo

LG Display's new OLEDs are even brighter and more power-efficient

LG Display is introducing its 4th-generation OLED TV displays today, which manage to not only be brighter than what it

16 gen 2025, 03:50:05 | Engadget
Tubi will livestream the 2025 Super Bowl for free in 4K

The Super Bowl tends to be a cultural moment, even for people who don't know an extra point from a safety. This year, if you want to see the whole program, including the halftime show by Kendrick L

16 gen 2025, 01:30:09 | Engadget
How to watch the Samsung Galaxy S25 Unpacked event

We're nearly a month into 2025, and it's time for another flagship smartphone announcement. Samsung's

15 gen 2025, 23:20:14 | Engadget
Google brings real-time information from The Associated Press to Gemini

Google is partnering with The Associated Press to bring real-time information from the news agency to its Gemini app, the search giant

15 gen 2025, 20:50:18 | Engadget
God of War Ragnarök headlines the PlayStation Plus Game Catalog additions for January

Sony is set to freshen up the PlayStation Plus Game Catalog for Extra and Premium subscribers with a

15 gen 2025, 20:50:17 | Engadget
FTC sues John Deere over ‘unfair corporate tactics’ and ‘high repair costs’

The Federal Trade Commission (FTC) has

15 gen 2025, 20:50:16 | Engadget
The Acura RSX calls dibs on Honda's proprietary Asimo OS

Honda has announced that its first original EV design, the

15 gen 2025, 18:31:07 | Engadget