Snynet Solution Logo
MON - SUN: 10 AM - 6 PM
+60 11 5624 8319

Blog

Your browser extensions may be secretly hiding a botnet

Image Description

One of the world's leading cybersecurity experts has revealed how a company that was paying to include its code in browser extensions was actually doing so in order to mask the real IP address of its own customers, who might be using the service for nefarious purposes.

Brian Krebs, together with developer of the ModHeader browser extension, Hao Nguyen, has shared details about Infatica’s program, which is just one of several that pay developers to include their code within the browser extensions

“For its part, Infatica seeks out authors with extensions that have at least 50,000 users. An extension maker who agrees to incorporate Infatica’s computer code can earn anywhere from $15 to $45 each month for every 1,000 active users,” shares Krebs.

Too good to refuse

Infatica is a proxy service provider that retails rotating backconnect residential proxies. It was one of the several companies that approached Nguyen to include its code in his extension.

After failing to monetize his extension for several years, Nguyen finally relented as the Infatica offer would have made him at least $1500 a month. Plus, Infatica’s code was fairly straightforward and limited itself to just routing web requests through the browsers of Nguyen’s users.

“The end result is when Infatica customers browse to a web site, that site thinks the traffic is coming from the Internet address tied to the extension user, not the customer’s,” explains Krebs.

While Nguyen was quick to sign out of the program, after his users complained, Krebs research revealed that at least three dozen extensions are using Infatica’s code. Many of these have over 100,000 users, reveals Krebs, including Video Downloader Plus, which is one of the most popular Chrome extensions for downloading media from several websites.

Krebs’ research once again highlights the unscrupulous use of extensions by shady services that prey on the economic vulnerabilities of extension developers. He echoes our suggestion to users to only use the bare essential third-party extensions, and be vary of any that suddenly ask for more permissions than previous versions.

Via: KrebsOnSecurity

Date

03 Mar 2021

Sources


Share


Other Blog

  • Microsoft Edge has a new tool to help you get the best deals this Black Friday

    With Black Friday 2021 only days away, Microsoft Edge has revealed a new tool that it hopes can help shoppers enjoy even more bargains.

    Microsoft's browser has teamed up with third-party payments firm Zip (previously known as Quadpay) to offer a "buy now, pay later" option built directly into Edge for users looking to spread the cost of payments when shopping online.

    Users will be able to split any purchase between $35 - $1,000 made through Microsoft Edge  into four installments over six weeks.

    Microsoft Edge BNPL

    Buy Now Pay Later (BNPL) services have skyrocketed in popularity in recent years as customers look for more options on how to shop and pay online.

    "Buy now, pay later,” or BNPL, lets shoppers break their purchases into equal installment payments, often interest-free, which can allow shoppers to get their purchase upfront, instead of having to wait until it’s paid in full," Microsoft wrote in a blog post announcing the news.

    "On top of coverage, we also aim to 1) meet you where you are. 2) simplify the application process."

    The new option will appear at the checkout phase when a user makes a purchase, appearing as an alternative choice when filling in a credit or debit card number. Other shoppers will be able to access BNPL when they enter the checkout page.

    You'll need a Zip account to use the feature, but this can then be linked to the Microsoft account used for Edge, which Microsoft says can be done with just a click, meaning you don't have to go through a long sign-in process each time.

    The new BNPL feature is currently available in the Microsoft Edge Canary and Dev channels, with the company hoping to offer it by default to all users in Microsoft Edge release 96.

    This should mean users around the world can benefit from it soon, although there's no concrete release date just yet.

    Read More
  • WhatsApp shopping button goes live - but there’ll be a cost for businesses

    The new button offers easy access to online shopping catalogs directly from within the chat screen of your device.

    Read More
  • Quantum computing-as-a-service is going mainstream

    Oxford Quantum Circuits has launched the UK's first QCaaS platform.

    Read More
  • Joker malware returns to target millions more Android devices

    Apps laced with a new Joker malware variant listed in official Google Play Store before being removed.

    Read More

Find Out More About Us

Want to hire best people for your project? Look no further you came to the right place!

Contact Us