MalwareBleeping Computer
8.0 — CRITICAL
Chrome Web Store extensions caught stealing crypto, browser data
Multiple extensions for Google Chrome and Microsoft Edge delivered a malware framework that deployed modules to steal cryptocurrency, sensitive data, and browser history, as well as inject ClickFix lures. [...]
🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview
A malicious campaign involved Chrome and Edge extensions that delivered a malware framework designed to steal cryptocurrency, sensitive data, and browser history. The operation may have been active since early 2024.
⚙️Technical Details
Affected Systems
Google ChromeMicrosoft Edge
Attack Vectors
Malware deployment via automatic updatesClickFix lures injectionWebSockets for command-and-control communication
💥Impact Assessment
Severity: High
Who Is at Risk
Users with installed malicious extensions, cryptocurrency holders
🛡️Recommended Actions
1Immediately remove all installed Chrome and Edge extensions from the Web Store
2Change login passwords for all affected accounts
3Move cryptocurrency assets to a newly created wallet as soon as possible
📦Affected Products
ChromeEdge
Read the full article
This is a curated summary. The complete article is available at Bleeping Computer.
