35 Chrome extensions that look harmless, but are secretly spying on you
Just because an extension has been downloaded thousands of times and looks harmless, doesn't mean it's legitimate. These 35 extensions in the Chrome Web Store are spying on you right under Google's nose — and you need to delete them right now.
Remove These 35 Chrome Browser Extensions Now!
Security researcher John Tuckner found a group of at least 35 extensions using the same pattern, connecting to some of the same servers and requesting the same list of sensitive system permissions. These extensions have a combined total of more than 4 million installs, and 10 of them even have a 'Featured' label on the Chrome Web Store—a badge reserved for verified developers you can trust.
Surprisingly, all but one of the extensions are not listed in the Chrome Web Store, meaning they don't appear in the Web Store or search results. It's unclear how they managed to amass such a large number of installs.
The full list of extensions is as follows:
- Better Browse by SecureSearch
- Bing Search by Securify
- Browse Securely for Chrome
- Browser Checkup for Chrome by Doctor
- Browser WatchDog for Chrome
- Check My Permissions for Chrome
- Choose Your Chrome Tools
- Cuponomia - Coupon and Cashback
- Data Shield for Chrome
- Fire Shield Chrome Safety
- Fire Shield Extension Protection
- Global search for Chrome
- In Site Search for Chrome
- Incognito Search for Chrome
- Incognito Shield for Chrome
- Map Search for Chrome
- MultiSearch for Chrome
- News Search for Chrome
- Privacy Guard for Chrome
- Private Search for Chrome
- Protecto for Chrome
- Safe Search for Chrome
- Securify Advanced Web Protection
- Secure for Chrome
- Secure Kid Protection
- Secure Your Browser
- SecuryBrowse for Chrome
- Total Safety for Chrome
- Protecto's Unbiased Search
- Watch Tower Overview
- Web Privacy Assistant
- Web Results for Chrome
- Website Safety for Chrome
- Ghost's Yahoo Search
In a Secure Annex blog post, Tuckner makes clear that extensions claim to have a number of purposes, such as blocking ads, providing better search results, protecting privacy, and, ironically, protecting extensions. While this may help extensions get available in the Chrome Web Store, the underlying code to deliver their claimed purpose is often minimal or absent.
All 35 extensions have obfuscated code, which is not a good sign from a security perspective as it hides the extension's behavior and slows down analysis. The extensions also have the unknown.com domain configured in their background services. The domain is unrelated to the underlying code, but it is useful for linking them.
They also request permissions that are beyond the scope of the specific extension's purpose, including:
- Tab management and interactive access
- Ability to set and store browser cookies
- Intercept and modify web requests
- Store data persistently in the browser
- Add JavaScript to web pages or manipulate their structure
- Activate alert
- Interact with browser activity along with other permissions
As you might expect, these permissions can give extensions a lot of access to your browser and private data, potentially leading to quite serious breaches. Most extensions don't ask for such high-level permissions, meaning that even if they don't use their extensive access for malicious purposes, they still pose unnecessary risks.
This isn't the first security issue involving Chrome extensions. Millions of users have been affected by malicious Chrome extensions in the past. While Google takes Chrome's security seriously, you should always check the safety of a Chrome extension before clicking that install button.
You should read it
- How to use the Chrome extension Trim to make Netflix better
- Chrome adds a warning when an extension takes over the Internet connection
- 7 best Chrome extensions to increase your productivity
- Instructions for installing extension for Chrome on a computer from a smartphone
- Listed 15 Chrome Extension for programmers
- How to create custom shortcuts for extensions on the Chrome browser
- Google 'tightens' the installation of the extension on Chrome browser
- 7 Best Chrome Extensions for Quick Information Gathering
- The Chrome gadget secretly exploits virtual money, making it slow
- Google Chrome temporarily prevents sideload of extensions
- Extension Police, an extension that helps protect Chrome from malicious extensions
- How to Install Bitmoji Extension for Chrome
Maybe you are interested
These safe alternatives to public Wi-Fi help protect your data How to create AI songs on Mmusichero AI How to capture, share screenshots PS5 How to enable / disable network location indexing in Photos app on Windows 10 How to install Windows 10 IoT Core on Raspberry Pi 3 How to start Raspberry Pi 3 from USB