Yellow Flag on Nostr: I found a bunch of malicious extensions in Chrome Web Store, with disguised ...
I found a bunch of malicious extensions in Chrome Web Store, with disguised functionality to commit affiliate fraud and collect browsing profiles. But that isn’t the interesting part, there is plenty of that in Chrome Web Store.
These extensions appear related to the Karma shopping assistant, with some strong indicators hinting towards them being developed by Karma Shopping Ltd. In case you are unfamiliar with the company, they employ more than 50 people and secured at least $28 million in funding.
Yes, they are presenting themselves as an innovative company of course.
https://palant.info/2024/10/30/the-karma-connection-in-chrome-web-store/Published at
2024-10-30 13:22:58Event JSON
{
"id": "275f7c14eab56548a9d279500d1337f96619f63c0c8d5075b0c546f03021a899",
"pubkey": "2bc45a4a0996e5c131a30296af731f6858c832f5d2f06f973fc9ae42ec2a0643",
"created_at": 1730294578,
"kind": 1,
"tags": [
[
"proxy",
"https://infosec.exchange/users/WPalant/statuses/113396585524033339",
"activitypub"
]
],
"content": "I found a bunch of malicious extensions in Chrome Web Store, with disguised functionality to commit affiliate fraud and collect browsing profiles. But that isn’t the interesting part, there is plenty of that in Chrome Web Store.\n\nThese extensions appear related to the Karma shopping assistant, with some strong indicators hinting towards them being developed by Karma Shopping Ltd. In case you are unfamiliar with the company, they employ more than 50 people and secured at least $28 million in funding.\n\nYes, they are presenting themselves as an innovative company of course.\n\nhttps://palant.info/2024/10/30/the-karma-connection-in-chrome-web-store/",
"sig": "611503a918f3339ece054b1d579e5bb54c56fe087e178ee9a52c743df91ac6ff3af7a9b3e0d0c7577c414df00d790782e6fd4f5838f2f57b36db1b202065688d"
}