More than 100 extensions were seen stealing sensitive browser data and executing malicious code. https://t.co/FTnKgaD5H7
Warning! Malicious Chrome extensions found mimicking legit tools https://t.co/Qh5hlwBGJM https://t.co/Qh5hlwBGJM
Une vaste opération de vol de données frappe Chrome depuis le début de l'année dernière. Plus de 100 extensions malveillantes, se faisant passer pour des outils légitimes comme YouTube ou Deepseek, ont été découvertes ➡️ https://t.co/bj7HeTj3it https://t.co/w0gsn1545T
Microsoft has uncovered a large-scale cyberattack involving over 100 malicious Chrome browser extensions that have been active since early 2024. These extensions impersonate legitimate tools such as YouTube, DeepSeek, Fortinet, and free VPN services, functioning normally while secretly stealing session cookies and enabling unauthorized access to users' accounts. The operation has compromised nearly 400,000 PCs by harvesting sensitive browser data and executing malicious code, highlighting a persistent threat within the Chrome extension ecosystem.