Malicious Browser Extensions Steal User Data, Including Cryptocurrency Info
Security researchers have identified 19 malicious browser extensions for Google Chrome and Microsoft Edge that were capable of stealing user data, including cryptocurrency information.
The extensions, which were discovered by Karlo Zanki, a security expert at Socket, exhibited similarities in their code and commercial practices, suggesting that the campaign may have been active as far back as February 2024.
The malicious extensions typically had dual functions, appearing to operate normally while also connecting to rogue servers to steal user data, execute arbitrary code, or inject malware.