Detecting browser extensions for bot detection, lessons from LinkedIn and Castle
ID: 7e444f30-25c1-5ba0-9d03-cc7daa01b8dd
STIX ID: report--7e444f30-25c1-5ba0-9d03-cc7daa01b8dd
Feed Name: Security Boulevard
This article analyzes browser extension detection techniques for bot and fraud detection, detailing LinkedIn’s approach of probing web-accessible extension resources via chrome-extension URLs and its tradeoffs (console noise, observability, performance), and contrasting it with Castle’s quieter method that identifies extensions through DOM and JavaScript side effects (e.g., injected elements, globals). It concludes that extension detection is a contextual, weak signal on its own but valuable when combined with broader fingerprinting and behavioral indicators.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
