How Browser Extensions can Exploit User Activities for Malicious Operations
ID: 69d1b107-485d-5d90-bf04-a0204cd1c0df
STIX ID: report--69d1b107-485d-5d90-bf04-a0204cd1c0df
Feed Name: CloudSEK Blog
This report explains how browser extensions can introduce security risks through broad permissions and potential hijacking, enabling keylogging, malvertising, and command-and-control activity; it also highlights cybercriminal markets like Genesis Store and Russian Market that sell stolen browser fingerprints and provide a .crx plugin to ease account takeover. It concludes with practical guidance: minimize installed extensions, prefer official stores, scrutinize permissions, and treat new permission requests as potential red flags.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
