Mashable 2024年12月29日
Hackers take over Google Chrome extensions in cyberattack
index_new5.html
../../../zaker_core/zaker_tpl_static/wap/tpl_guoji1.html

 

圣诞节期间,多款Chrome扩展程序遭到黑客攻击,恶意代码被植入以窃取用户数据,包括浏览器cookie和身份验证信息。黑客的目标似乎是社交媒体广告账户和AI平台凭证。网络安全公司Cyberhaven是受影响的公司之一,其Chrome扩展程序在圣诞节前夕被推送了恶意更新。该公司在发现攻击后迅速修复并通知用户。其他受影响的扩展程序包括Internxt VPN、ParrotTalks、Uvoice和VPNCity,这些扩展程序的用户数量庞大。攻击源于针对Chrome扩展程序开发者的网络钓鱼邮件,黑客通过诱骗员工输入登录凭据成功入侵。目前,尚不清楚有多少用户受到了影响。

🚨 黑客通过网络钓鱼邮件攻击Chrome扩展开发者,成功植入恶意代码,目的是窃取用户浏览器数据和身份验证信息。

🍪 被攻击的Chrome扩展包括Internxt VPN、ParrotTalks、Uvoice和VPNCity等,这些扩展拥有数万用户,表明攻击影响范围较广。

🎯 黑客的主要目标是社交媒体广告账户(如Facebook Ads)和AI平台凭证,这意味着攻击可能具有明确的商业利益动机。

🛠️ Cyberhaven公司在圣诞节当天发现攻击并迅速修复,并在第一时间通知用户,体现了应对网络安全事件的及时性和责任感。

Some companies received something worse than a lump of coal from Santa this Christmas: Hackers attacking their Chrome extensions.

Hackers hijacked a number of Chrome extensions this past week, according to a new report from Reuters. The attack was first noticed by cyber security company Cyberhaven, which was one of the companies affected by the hack.

In a blog post from Cyberhaven, the company says the cyberattack inserted malicious code into these Chrome extensions in an attempt to steal user data such as web browser cookies and authentication. The hackers appear to have specifically been looking to obtain access to social media advertising accounts, specifically Facebook Ads accounts, and AI platform credentials.

According to Cyberhaven, the hackers pushed an updated version of its Chrome extension with the malicious code to users on Christmas Eve. The company became aware of the hack on Christmas Day and immediately pushed out a fix within an hour. The company began informing users of the hack on Friday morning with an email notification.

Other Chrome extensions confirmed to have been injected with the malicious code include Internxt VPN, ParrotTalks, Uvoice, and VPNCity. Each of these Chrome extensions has tens of thousands of users, according to the public stats on the Chrome Web Store.

The attack began after a hacker successfully targeted a Cyberhaven employee via a phishing email that was sent to Chrome extension developers. The employee, believing the email was an official Google contact, clicked the email and input their login credentials on the phishing page.

Cyberhaven doesn't believe the attackers were targeting any specific companies, but rather sending out a mass phishing campaign and then going forward with any recipient that clicked through.

At this time, it's unclear as to how many users of these Chrome extensions have been affected.

Fish AI Reader

Fish AI Reader

AI辅助创作,多种专业模板,深度分析,高质量内容生成。从观点提取到深度思考,FishAI为您提供全方位的创作支持。新版本引入自定义参数,让您的创作更加个性化和精准。

FishAI

FishAI

鱼阅,AI 时代的下一个智能信息助手,助你摆脱信息焦虑

联系邮箱 441953276@qq.com

相关标签

Chrome扩展 黑客攻击 网络钓鱼 数据安全 网络安全
相关文章