The attack, which began on Christmas Eve, exploited a vulnerability in the Chrome Web Store's developer authentication system ...
Hackers have targeted Google Chrome users in a frightening 2FA bypass attack—a full list of impacted extensions has now been ...
By Raphael Satter and AJ Vicens Hackers compromised an employee of the data-protection company Cyberhaven and used the worker ...
The malicious extension, available as version 24.10.4, was available for 31 hours, from December 25 at 1:32 AM UTC to Dec 26 ...
The recent compromise of Cyberhaven’s Chrome extension appears to be part of a broad campaign that started over a year ago.
The data-loss startup says it was targeted as part of a "wider campaign to target Chrome extension developers." ...
SquareX, an industry-first Browser Detection and Response (BDR) solution, leads the way in browser security. About a week ago ...
A BleepingComputer investigation found the same code was injected into at least 35 Google Chrome extensions, which are being ...
Dec. 25, 2024, cybersecurity firm Cyberhaven was the target of a large-scale attack. Through their Chrome extension, 400,000 ...
Other extensions possibly affected include Internxt VPN, VPNCity, Uvoice, and ParrotTalks, as Bleeping Computer writes.
At least five Chrome extensions were compromised in a coordinated attack where a threat actor injected code that steals ...
New details have emerged about a phishing campaign targeting Chrome browser extension developers that led to the compromise ...