Some companies received something worse than a lump of coal from Santa this Christmas: Hackers attacking their Chrome extensions.
Hackers hijacked a number of Chrome extensions this past week, according to a new report from Reuters. The attack was first noticed by cyber security company Cyberhaven, which was one of the companies affected by the hack.
In a blog post from Cyberhaven, the company says the cyberattack inserted malicious code into these Chrome extensions in an attempt to steal user data such as web browser cookies and authentication. The hackers appear to have specifically been looking to obtain access to social media advertising accounts, specifically Facebook Ads accounts, and AI platform credentials.
Tweet may have been deleted
According to Cyberhaven, the hackers pushed an updated version of its Chrome extension with the malicious code to users on Christmas Eve. The company became aware of the hack on Christmas Day and immediately pushed out a fix within an hour. The company began informingusers of the hack on Friday morning with an email notification.
Other Chrome extensions confirmed to have been injected with the malicious code include Internxt VPN, ParrotTalks, Uvoice, and VPNCity. Each of these Chrome extensions has tens of thousands of users, according to the public stats on the Chrome Web Store.
The attack began after a hacker successfullytargeted a Cyberhaven employee via a phishing email that was sent to Chrome extension developers. The employee, believing the email was an official Google contact, clicked the email and input their login credentials on the phishing page.
Cyberhaven doesn't believe the attackers were targeting any specific companies, but rather sending out a mass phishing campaign and then going forward with any recipient that clicked through.
At this time, it's unclear as to how many users of these Chrome extensions have been affected.
Copyright © 2023 Powered by
Hackers take over Google Chrome extensions in cyberattack-山眉水眼网
sitemap
文章
45575
浏览
4
获赞
8
Google Arts & Culture brings 'ancient creatures' to augmented reality
A crustacean with scores of tiny eyes could be your newest houseguest — in augmented reality,New malware 'Silver Sparrow' targets both Intel and M1 Macs
UPDATE: Feb. 21, 2021, 11:27 p.m. EST This story has been updated with a response from Apple regardiBask in the glory of this enormous dog getting a bath
Here's something cute: a dog. Here's something cuter: a dog getting a bath. Here's something even cuMcDonald's and Pret are giving healthcare workers free coffee amid coronavirus pandemic
We owe our healthcare workers a lifetime of gratitude as they work on the frontline of the new coronGoogle rebrands G Suite as Google Workspace, gives Gmail a new logo
Google is once again reshuffling its portfolio of productivity apps.On Tuesday, the company announceFacebook, Twitter, and Google CEOs to testify before Congress
Tech CEOs are appearing (remotely) before congress again, and the question is still whether the evenMasturbation meditation works. Here’s the proof.
March Mindfulnessis Mashable's series that examines the intersection of meditation practice and techFacebook, Twitter, and Google CEOs to testify before Congress
Tech CEOs are appearing (remotely) before congress again, and the question is still whether the evenHackers forced the New Zealand stock exchange to shut down... twice
A distributed denial-of-service attack may not be sophisticated, but it sure is effective. That muchThe best ways to sleep better (even during a pandemic)
Having trouble sleeping? Hit Snoozeis Mashable's deep dive into how we cope with our collective insoApple and Google block UK COVID app update for breaking data
Google and Apple have blocked an update to the UK government's COVID-19 contact tracing app for breaThe ‘we are the virus’ meme is a whimsical take on coronavirus misinformation
Maybe you've seen whimsical posts about animals like elephants and dolphins returning to areas thatKeanu Reeves turns 55 and Twitter is so happy for him
The internet's number one crush of 2019, Keanu Reeves, is turning another year older, wiser, and hotThe real impact of not having been touched in months
What makes the coronavirus pandemic unlike any other collective tragedy is that we can't commiserateHow to mask your iPhone's 'advertising identifier,' and why you should
Privacy Please is an ongoing series exploring the ways privacy is violated in the modern world, and