ADVERTISEMENT

Over 100 malicious Chrome extensions detected: disguised as AI tools, VPNs, and crypto utilities

In over a year, a single cybercriminal spawned over 100 fake malicious Chrome extensions with dual functionalities, capable of tracking users and stealing their access tokens. The hacker bypasses Google’s defenses by injecting malicious scripts remotely, after the extension is installed.

Hackers bypassing Google Chrome defenses

Image by Cybernews.

Ernestas Naprys
Ernestas Naprys Senior Journalist
May 20, 2025 Updated: May 20, 2025 3 min read
fraudulent-website

How does the hacker bypass Google’s defenses?

ADVERTISEMENT
fraudulent-vpn-extension
ADVERTISEMENT