Beware of Malicious Chrome Extensions Masquerading as Trusted Apps
A newly discovered "polymorphic" attack is making it easier for malicious Chrome extensions to disguise themselves as legitimate ones, such as password managers, crypto wallets, and banking apps. This deceptive tactic allows attackers to steal sensitive information without raising suspicion.
The team at SquareX Labs uncovered this vulnerability and has confirmed that it works on the latest version of Chrome. They have responsibly reported their findings to Google to help address the issue.
Stay cautious when installing browser extensions—only download from trusted sources and review permissions carefully! Check out the following article to learn more at https://www.bleepingcomputer.com/news/security/malicious-chrome-extensions-can-spoof-password-managers-in-new-attack/?
Thank You Bill Toulas of Bleepingomputer for this very informative article
















