Close Menu
Technology Mag

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Samsung’s Galaxy Watch 8 just came out and you can already save $50

    August 2, 2025

    The enforcer that could break up Apple and Google is facing upheaval

    August 2, 2025

    A ‘Grand Unified Theory’ of Math Just Got a Little Bit Closer

    August 2, 2025
    Facebook X (Twitter) Instagram
    Subscribe
    Technology Mag
    Facebook X (Twitter) Instagram YouTube
    • Home
    • News
    • Business
    • Games
    • Gear
    • Reviews
    • Science
    • Security
    • Trending
    • Press Release
    Technology Mag
    Home » Hackers hijacked legitimate Chrome extensions to try to steal data
    News

    Hackers hijacked legitimate Chrome extensions to try to steal data

    News RoomBy News RoomDecember 28, 20242 Mins Read
    Facebook Twitter Pinterest LinkedIn Reddit WhatsApp Email

    A cyberattack campaign inserted malicious code into multiple Chrome browser extensions as far back as mid-December, Reuters reported yesterday. The code appeared designed to steal browser cookies and authentication sessions, targeting “specific social media advertising and AI platforms,” according to a blog post from Cyberhaven, one of the companies that was targeted.

    Cyberhaven blames a phishing email for the attack, writing in a separate technical analysis post that the code appeared to specifically target Facebook Ads accounts. According to Reuters, security researcher Jaime Blasco believes the attack was “just random” and not targeting Cyberhaven specifically. He posted on X that he’d found VPN and AI extensions that contained the same malicious code that was inserted into Cyberhaven.

    Cyberhaven says hackers pushed an update (version 24.10.4) of its Cyberhaven data loss prevention extension containing the malicious code on Christmas Eve at 8:32PM ET. Cyberhaven says it discovered the code on December 25th at 6:54PM ET and removed it within an hour, but that the code was active until December 25th at 9:50PM ET. The company says it released a clean version in its 24.10.5 update.

    Cyberhaven’s recommendations for companies that may be affected include that they check their logs for suspicious activity and revoke or rotate any passwords not using the FIDO2 multifactor authentication standard. Prior to publishing its posts, the company notified customers via an email that TechCrunch reported Friday morning.

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Reddit Email
    Previous ArticleThe Best Smart Lighting Panels, LED Strips, and Ambient Lamps
    Next Article The SwitchBot S10, one of our favorite robovac / mop hybrids, is $500 off

    Related Posts

    Samsung’s Galaxy Watch 8 just came out and you can already save $50

    August 2, 2025

    The enforcer that could break up Apple and Google is facing upheaval

    August 2, 2025

    I tried ‘Bricking’ my phone to fix my brain

    August 2, 2025

    BougeRV’s portable solar fridge is quietly annoying

    August 2, 2025

    Zuckerberg’s ‘personal superintelligence’ plan: fill your free time with more AI

    August 1, 2025

    Tim Cook says Apple ‘must’ figure out AI and ‘will make the investment to do it’

    August 1, 2025
    Our Picks

    The enforcer that could break up Apple and Google is facing upheaval

    August 2, 2025

    A ‘Grand Unified Theory’ of Math Just Got a Little Bit Closer

    August 2, 2025

    Tesla Found Partly Liable in 2019 Autopilot Death

    August 2, 2025

    I tried ‘Bricking’ my phone to fix my brain

    August 2, 2025
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo
    Don't Miss
    Security

    The FBI’s Jeffrey Epstein Prison Video Had Nearly 3 Minutes Cut Out

    By News RoomAugust 2, 2025

    Newly uncovered metadata reveals that nearly three minutes of footage were cut from what the…

    A Premium Luggage Service’s Web Bugs Exposed the Travel Plans of Every User—Including Diplomats

    August 2, 2025

    Watch Our Livestream Replay: Inside Katie Drummond’s Viral Interview With Bryan Johnson

    August 2, 2025

    Vivobarefoot’s Sensus Shoes Are Like Gloves for Your Feet

    August 2, 2025
    Facebook X (Twitter) Instagram Pinterest
    • Privacy Policy
    • Terms of use
    • Advertise
    • Contact
    © 2025 Technology Mag. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.