#extensions


Malicious KICS Docker Images and VS Code Extensions Hit Checkmarx Supply Chain

Apr 22, 2026 // 21:00

Cybersecurity researchers have warned of malicious images pushed to the official “checkmarx/kics” Docker Hub repository. In an alert published today, software supply chain security company […]

Over 100 Chrome Web Store extensions steal user accounts, data

Apr 15, 2026 // 10:17

More than 100 malicious extensions in the official Chrome Web Store are attempting to steal Google OAuth2 Bearer tokens, deploy backdoors, and carry out ad […]

108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 Users

Apr 14, 2026 // 11:39

Cybersecurity researchers have discovered a new campaign in which a cluster of 108 Google Chrome extensions has been found to communicate with the same command-and-control […]

Untapped AI: Browser Extensions Are the Future Consumption.

Apr 10, 2026 // 14:03

While much focus in AI security is on protecting ‘shadow’ AI and GenAI use, a significant vulnerability remains unaddressed: AI browser extensions. A new report […]

LinkedIn’s Privacy Breach: Secretly Tracking Chrome Extensions, Gathering User Data

Apr 4, 2026 // 17:17

A new report called “BrowserGate” suggests that LinkedIn, owned by Microsoft, is using hidden JavaScript on its website to identify browser extensions and gather device […]

LinkedIn’s Chrome Extension Spying: Data Collection Revealed on 6000+ Extensions.

Apr 3, 2026 // 23:57

A new study called “BrowserGate” suggests that LinkedIn, owned by Microsoft, is secretly using JavaScript code on its website to examine visitors’ browsers for installed […]

GlassWorm Attack: 72 Open VSX Extensions Weaponized to Target Devs

Mar 14, 2026 // 17:12

The GlassWorm supply-chain attack has recently expanded, with researchers identifying 72 additional malicious extensions on the Open VSX Registry as of March 2026. This campaign targets developers by abusing trusted extension […]

Sold Chrome Extensions QuickLens & ShotBird Turn Malware: Steal Data via Code Injection

Mar 9, 2026 // 14:24

Two Google Chrome extensions, QuickLens and ShotBird, were recently identified as malicious following a change in ownership. These extensions, which previously held legitimate reputations and “Featured” badges, were […]

Chrome’s Gemini Panel Vulnerability Allowed Extensions to Hijack AI Assistant

Mar 2, 2026 // 20:20

A significant vulnerability was recently found in Chrome’s Gemini Live AI assistant. It could have allowed malicious browser extensions to take over the AI panel […]

Previous 1 … 5 6 7