Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Big tech companies agree to not ruin your electric bill with AI data centers

    Mark Zuckerberg downplays Meta’s own research in New Mexico child safety trial

    Bill Gates-backed TerraPower begins nuclear reactor construction

    Facebook X (Twitter) Instagram
    • Artificial Intelligence
    • Business Technology
    • Cryptocurrency
    • Gadgets
    • Gaming
    • Health
    • Software and Apps
    • Technology
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Tech AI Verse
    • Home
    • Artificial Intelligence

      What the polls say about how Americans are using AI

      February 27, 2026

      Tensions between the Pentagon and AI giant Anthropic reach a boiling point

      February 21, 2026

      Read the extended transcript: President Donald Trump interviewed by ‘NBC Nightly News’ anchor Tom Llamas

      February 6, 2026

      Stocks and bitcoin sink as investors dump software company shares

      February 4, 2026

      AI, crypto and Trump super PACs stash millions to spend on the midterms

      February 2, 2026
    • Business

      Google releases Gemini 3.1 Flash Lite at 1/8th the cost of Pro

      March 4, 2026

      Huawei Watch GT Series

      March 4, 2026

      Weighing up the enterprise risks of neocloud providers

      March 3, 2026

      A stolen Gemini API key turned a $180 bill into $82,000 in two days

      March 3, 2026

      These ultra-budget laptops “include” 1.2TB storage, but most of it is OneDrive trial space

      March 1, 2026
    • Crypto

      Banks Respond to Kraken’s Federal Reserve Access as Trump Sides with Crypto

      March 4, 2026

      Hyperliquid and DEXs Break the Top 10 — Is the CEX Era Ending?

      March 4, 2026

      Consensus Hong Kong 2026: The Institutional Turn 

      March 4, 2026

      New Crypto Mutuum Finance (MUTM) Reports V1 Protocol Progress as Roadmap Enters Phase 3

      March 4, 2026

      Bitcoin Short Sellers Caught Off Guard in New White House Move

      March 4, 2026
    • Technology

      Big tech companies agree to not ruin your electric bill with AI data centers

      March 5, 2026

      Mark Zuckerberg downplays Meta’s own research in New Mexico child safety trial

      March 5, 2026

      Bill Gates-backed TerraPower begins nuclear reactor construction

      March 5, 2026

      Assassin’s Creed Unity is getting a free 60 fps patch tomorrow

      March 5, 2026

      LG reveals pricing for its 2026 OLED TVs

      March 5, 2026
    • Others
      • Gadgets
      • Gaming
      • Health
      • Software and Apps
    Check BMI
    Tech AI Verse
    You are at:Home»Technology»Researcher uncovers network of risky Chrome extensions with over 4 million installs
    Technology

    Researcher uncovers network of risky Chrome extensions with over 4 million installs

    TechAiVerseBy TechAiVerseApril 12, 2025No Comments3 Mins Read2 Views
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    Researcher uncovers network of risky Chrome extensions with over 4 million installs
    Share
    Facebook Twitter LinkedIn Pinterest WhatsApp Email

    Researcher uncovers network of risky Chrome extensions with over 4 million installs

    Serving tech enthusiasts for over 25 years.

    TechSpot means tech analysis and advice you can trust.

    In a nutshell: A security researcher recently uncovered nearly three dozen Chrome Web Store extensions exhibiting suspicious behavior. Many present themselves as search assistants, while others pose as ad blockers, security tools, or extension scanners – all mysteriously linked to a single, unused domain.

    John Tucker, founder of browser security firm Secure Annex, discovered the suspicious extensions while assisting a client who had installed one or more for security monitoring. The first red flag: two of the 132 extensions he analyzed were unlisted, meaning they don’t appear in web searches or the Chrome Web Store. Users can only download these tools via a direct URL. Unlisted extensions aren’t that uncommon. Businesses sometimes use them to limit public access to internal tools.

    However, malicious actors often use unlisted extensions to exploit users, keeping them hidden and making it difficult for Google to detect. After Tucker began analyzing the two suspicious extensions, he uncovered 33 more. Many connect to the same servers, use identical code patterns, and request the same permissions.

    The apps ask users for consent to access sensitive data, including browser tabs and windows, cookies, storage, scripting, alarms, and management APIs. This level of access is unusually high, making it easy for bad actors to exploit the user’s system for various malicious purposes.

    “At this point, this information should be enough for any organization to reasonably kick this out of their environment as it presents unnecessary risk,” Tucker wrote in his blog on Thursday. “The only permission any of the 35 apps requires is management,” he added in an email to Ars Technica.

    In addition to the suspicious number of permissions these apps request, their programming is equally concerning. Tucker found the apps had heavily obfuscated code. A developer would only program their software this way to make it difficult for others to examine and understand its actions.

    Collectively, users have installed the 35 apps over 4 million times. While it’s unclear how unlisted extensions attracted so much attention without appearing in searches, Tucker notes that 10 carried Google’s “Featured” tag – a designation typically given to developers Google has vetted and trusts. He didn’t elaborate on how this may have influenced their distribution.


    Click to enlarge to see the full list.

    Tucker found no direct evidence that the extensions exfiltrate data – but that doesn’t rule it out. One tool called Fire Shield Extension Protection ironically claims to scan Chrome for malicious or suspicious plugins. After analyzing it, Tucker discovered a JavaScript file that can upload data and download code and instructions from several shady domains, including one called unknow.com.

    This domain stands out because all 35 apps reference it in their background service daemons despite it having no visible web presence or clear function. Whois records list it as “available” and “for sale,” making it especially bizarre that so many extensions would point to it.

    “Hilariously, the domain doesn’t have any relevance in the code, but [is] incredibly useful for linking all of the extensions together!” Tucker said.

    Secure Annex published a comprehensive list of extension IDs and permhashes on its blog and in a publicly accessible spreadsheet. A simpler list of extension names appears in the image above. If you have any of these installed, Tucker recommends removing them immediately – the security risks far outweigh any potential benefit.

    Share. Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Telegram Email
    Previous ArticleRazer launches PC Remote Play app to compete in game streaming arena
    Next Article Sony stops making 8K TVs, but ultra high-def cameras remain key to future
    TechAiVerse
    • Website

    Jonathan is a tech enthusiast and the mind behind Tech AI Verse. With a passion for artificial intelligence, consumer tech, and emerging innovations, he deliver clear, insightful content to keep readers informed. From cutting-edge gadgets to AI advancements and cryptocurrency trends, Jonathan breaks down complex topics to make technology accessible to all.

    Related Posts

    Big tech companies agree to not ruin your electric bill with AI data centers

    March 5, 2026

    Mark Zuckerberg downplays Meta’s own research in New Mexico child safety trial

    March 5, 2026

    Bill Gates-backed TerraPower begins nuclear reactor construction

    March 5, 2026
    Leave A Reply Cancel Reply

    Top Posts

    Ping, You’ve Got Whale: AI detection system alerts ships of whales in their path

    April 22, 2025704 Views

    Lumo vs. Duck AI: Which AI is Better for Your Privacy?

    July 31, 2025288 Views

    6.7 Cummins Lifter Failure: What Years Are Affected (And Possible Fixes)

    April 14, 2025164 Views

    6 Best MagSafe Phone Grips (2025), Tested and Reviewed

    April 6, 2025124 Views
    Don't Miss
    Technology March 5, 2026

    Big tech companies agree to not ruin your electric bill with AI data centers

    Big tech companies agree to not ruin your electric bill with AI data centersToday the…

    Mark Zuckerberg downplays Meta’s own research in New Mexico child safety trial

    Bill Gates-backed TerraPower begins nuclear reactor construction

    Assassin’s Creed Unity is getting a free 60 fps patch tomorrow

    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    About Us
    About Us

    Welcome to Tech AI Verse, your go-to destination for everything technology! We bring you the latest news, trends, and insights from the ever-evolving world of tech. Our coverage spans across global technology industry updates, artificial intelligence advancements, machine learning ethics, and automation innovations. Stay connected with us as we explore the limitless possibilities of technology!

    Facebook X (Twitter) Pinterest YouTube WhatsApp
    Our Picks

    Big tech companies agree to not ruin your electric bill with AI data centers

    March 5, 20262 Views

    Mark Zuckerberg downplays Meta’s own research in New Mexico child safety trial

    March 5, 20262 Views

    Bill Gates-backed TerraPower begins nuclear reactor construction

    March 5, 20262 Views
    Most Popular

    7 Best Kids Bikes (2025): Mountain, Balance, Pedal, Coaster

    March 13, 20250 Views

    VTOMAN FlashSpeed 1500: Plenty Of Power For All Your Gear

    March 13, 20250 Views

    Best TV Antenna of 2025

    March 13, 20250 Views
    © 2026 TechAiVerse. Designed by Divya Tech.
    • Home
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms & Conditions

    Type above and press Enter to search. Press Esc to cancel.