WHAT IS BROWSER EXTENSION?
Google Chrome Extensions are small software programs that customize the browsing experience and provide new feature to websites.
They enable users to add new feature for browser functionality and behavior to individual needs or preferences.
Researchers at Awake Security told Reuters,
A newly Google Chrome Extensions discovered spyware effort attacked users through 32 million downloads of extensions to Google’s market leading Chrome web browser.
The spyware, has been pushed through at least in malicious or fake Chrome browser extensions
WHAT IS A SPYWARE?
Spyware is unwanted software/Threat that infiltrates your computing device, stealing your internet usage data and sensitive data from your computer.
Spyware is classified as a type of malware malicious software designed by Anonymous users to gain access to or damage your computer, often without your knowledge.
The report also said Google had taken off more than 70 extensions from its official Web Store last month after being alerted to their malicious nature by researchers at Awake Security.
HOW DO THESE MALICIOUS EXTENSIONS GET IN TO THE CHROME STORE?
They seem harmless, to being with. These “sleeper agent extensions” appear to do nothing in the beginning.
The “malicious payloads” are only pushed on to the extensions much after the “clean” versions have been approved.
WHAT DO THE MALICIOUS EXTENSIONS DO?
They can take screenshots, read the clipboard, harvest credential tokens stored in cookies or parameters, grab user keystrokes (like passwords).
WHAT GOOGLE HAS DONE?
As mentioned earlier, Google has recently removed the malicious extensions when alerted to Google.
HOW TO SECURE YOURSELF FROM SPYWARE?
The security firm has also documented some standard characteristics of malicious campaigns.
For starters, some of these malicious players have professional-looking web sites that peddle false promises.
These extensions, for an unknown brand and little information, have a huge following; The user reviews are always great; These extensions have a huge following despite being relatively new in the market.
Massive spying on users of Google Chrome Massive spying on users of Google Chrome