Chrome extension malware
Widely Used Malicious Extensions Steal ChatGPT, DeepSeek Conversations
Jeffrey Burt | | AI Models Risk, AI sidebar, Anthropic AI, ChatGPT, Chrome extension malware, DeepSeek AI, google, malicious extensions, Microsoft Copilot, OX Security
Threat actors used two malicious Chrome extensions that have 900,000 users to steal their chats with AI models like ChatGPT and DeepSeek and browser history. The incident is the latest in a ...
Security Boulevard
ShadyPanda Takes its Time to Weaponize Legitimate ExtensionsÂ
Teri Robinson | | affiliate fraud campaign, browser ecosystem vulnerabilities, browser extension supply chain attack, Browser Fingerprinting, browser surveillance tools, China-nexus cyber espionage, Chrome extension malware, cookie exfiltration, developer account compromise, Edge extension malware, enterprise browser security risk, extension review bypass, malicious auto-update pipeline, malicious JavaScript payloads, nuggetsno15 extensions, remote code execution extensions, search query harvesting, supply chain infiltration, unencrypted HTTP data leak, zero trust for browser security, Zhang Edge extensions
ShadyPanda spent seven years uploading trusted Chrome and Edge extensions, later weaponizing them for tracking, hijacking, and remote code execution. Learn how the campaign unfolded ...
Security Boulevard

