logo

New Update – 35 Google Chrome Extensions Hacked to Inject Malicious Code

ID: 1ce6d5b5-46e0-5827-bb06-5ea4663b6b60

STIX ID: report--1ce6d5b5-46e0-5827-bb06-5ea4663b6b60

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2025-01-01

Date Updated: 2026-04-21

Author: Guru Baran

...
...

A widespread phishing campaign compromised at least 35 Chrome extensions (≈2.6M users) by using deceptive OAuth-based developer prompts to take over publisher accounts and push malicious updates that harvest cookies, session tokens and credentials and exfiltrate them to attacker-controlled C2 servers; affected extensions include VPNs, AI tools and productivity add-ons, and users are advised to uninstall or update extensions, revoke sessions and monitor accounts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.