HomeTechnologyHackers attack Chrome extensions, spreading dangerous code to users

Hackers attack Chrome extensions, spreading dangerous code to users

California-based cybersecurity firm Cyberhaven has confirmed that hackers have published a malicious update to its Chrome extensions, exposing over 6,00,000 users to potential data theft. This breach puts Facebook ad users at high risk of account hacking or unknown access

December 30, 2024 / 20:16 IST
Story continues below Advertisement
Chrome
Chrome

A sophisticated cyberattack campaign has targeted 16 Chrome extensions to steal sensitive data of Facebook ad users. According to an initial investigation by the cybersecurity firm Cyberhaven, the malicious code was designed to steal sensitive data, including access tokens, user IDs, account information, cookies, and other sensitive data.

Google Chrome extensions attack: Key details

Story continues below Advertisement

According to a new report by Reuters, security researcher Jaime Blasco has stated that the attack was a random malware injection and not targeting Cyberhaven specifically. Further, he added that VPN and AI extensions containing the same malicious code that was inserted into Cyberhaven were responsible for security breaches for other firms.

Cyberhaven has a prestigious list of customers, using its servers such as Snowflake, Motorola, Canon, Reddit, AmeriHealth, Upstart, and others. The cybersecurity company reported in a blog post that its Chrome extension was hacked on December 24, in an attack targeting logins to certain social media advertising and AI platforms. Other extensions, including ParrotTalks, Uvoice, and VPNCity, and 13 other Chrome extensions were also affected.