LayerX Security reposted this
An extremely overlooked attack vector with massive damage potential. Proud of my team for identifying additional compromised browser extensions following a major security breach in #CyberHaven. It's crucial to stay vigilant about browser extensions across your user base!
𝐂𝐡𝐫𝐨𝐦𝐞 𝐄𝐱𝐭𝐞𝐧𝐬𝐢𝐨𝐧𝐬 𝐡𝐚𝐜𝐤𝐢𝐧𝐠 𝐜𝐚𝐦𝐩𝐚𝐢𝐠𝐧 𝐮𝐩𝐝𝐚𝐭𝐞 LayerX has identified 8 additional compromised and weaponized extensions that affected ~845,000 users. The list includes IObit - another security vendor impacted in this breach beyond #CyberHaven. Censor Tracker – Proxy for Privacy & Security - ID: gaidoampbkcknofoejhnhbhbhhifgdop ChatGPT Quick Access - ID: didhgeamncokiaegffipckhhcpnmlcbl IObit Surfing Protection - ID: imgpenhngnbnmhdkpdfnfhdpmfgmihdn ChatGPT for Google Meet - ID: epdjhgbipjpbbhoccdeipghoihibnfja Save ChatGPT - ID: fchlkklfiflmihhlabmkkcfbkdfmemhg Copilot AI Assistant for Chrome - ID: bbdnohkpnbkdkmnkddobeafboooinpla AI Assistant - ChatGPT and Gemini for Chrome - ID: bibjgkidgpfbblifamdlkdlhgihmfohh Wakelet - ID: iomokcfebnfiflpgcpcijfkfmafgkjgh We suspect these extensions have been compromised and abused, as they either contain the malicious code in their current version or had it in a previous version that was quickly updated. It is important to note that even if an extension was malicious for a limited time, significant damage could still occur. In just seconds, an attacker can steal all the cookies from the affected browser and perform account takeovers on all impacted accounts. *LayerX scans the code of all our customers' extensions across all versions and identifies additional compromised extensions*