home.social

#chromeextension — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #chromeextension, aggregated by home.social.

  1. PEEP: A Browser RAT Posing as a Chrome Extension

    PEEP is a Chromium-based post-exploitation toolkit disguised as 'Smart Bookmarks' that transforms Chrome and Edge browsers into persistent backdoors. Requiring prior administrative access, it bypasses Web Store security by forging Chromium integrity values and uses native-messaging to extend beyond browser telemetry to full host-level command execution. The malware beacons every 30 seconds over unencrypted HTTP, exfiltrating browsing history, cookies, credentials, and session data. Built on the open-source RedExt framework with significant enhancements, PEEP combines browser surveillance with filesystem manipulation, shell command execution, and process discovery. The infrastructure exposed development artifacts including source code, signing keys, and Traditional Chinese testing logs, indicating a Chinese-speaking operator using AI-assisted development. The toolkit demonstrates sophisticated persistence through HMAC forgery, enterprise policies, and ScriptCache manipulation.

    Pulse ID: 6a9eb13dfccfac432c46d96e
    Pulse Link: otx.alienvault.com/pulse/6a9eb
    Pulse Author: AlienVault
    Created: 2026-09-07 12:42:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chinese #Chrome #ChromeExtension #Cookies #CyberSecurity #Edge #GRIT #HTTP #InfoSec #Mac #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault

  2. PEEP: A Browser RAT Posing as a Chrome Extension

    PEEP is a Chromium-based post-exploitation toolkit disguised as 'Smart Bookmarks' that transforms Chrome and Edge browsers into persistent backdoors. Requiring prior administrative access, it bypasses Web Store security by forging Chromium integrity values and uses native-messaging to extend beyond browser telemetry to full host-level command execution. The malware beacons every 30 seconds over unencrypted HTTP, exfiltrating browsing history, cookies, credentials, and session data. Built on the open-source RedExt framework with significant enhancements, PEEP combines browser surveillance with filesystem manipulation, shell command execution, and process discovery. The infrastructure exposed development artifacts including source code, signing keys, and Traditional Chinese testing logs, indicating a Chinese-speaking operator using AI-assisted development. The toolkit demonstrates sophisticated persistence through HMAC forgery, enterprise policies, and ScriptCache manipulation.

    Pulse ID: 6a9eb13dfccfac432c46d96e
    Pulse Link: otx.alienvault.com/pulse/6a9eb
    Pulse Author: AlienVault
    Created: 2026-09-07 12:42:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chinese #Chrome #ChromeExtension #Cookies #CyberSecurity #Edge #GRIT #HTTP #InfoSec #Mac #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault

  3. PEEP: A Browser RAT Posing as a Chrome Extension

    PEEP is a Chromium-based post-exploitation toolkit disguised as 'Smart Bookmarks' that transforms Chrome and Edge browsers into persistent backdoors. Requiring prior administrative access, it bypasses Web Store security by forging Chromium integrity values and uses native-messaging to extend beyond browser telemetry to full host-level command execution. The malware beacons every 30 seconds over unencrypted HTTP, exfiltrating browsing history, cookies, credentials, and session data. Built on the open-source RedExt framework with significant enhancements, PEEP combines browser surveillance with filesystem manipulation, shell command execution, and process discovery. The infrastructure exposed development artifacts including source code, signing keys, and Traditional Chinese testing logs, indicating a Chinese-speaking operator using AI-assisted development. The toolkit demonstrates sophisticated persistence through HMAC forgery, enterprise policies, and ScriptCache manipulation.

    Pulse ID: 6a9eb13dfccfac432c46d96e
    Pulse Link: otx.alienvault.com/pulse/6a9eb
    Pulse Author: AlienVault
    Created: 2026-09-07 12:42:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chinese #Chrome #ChromeExtension #Cookies #CyberSecurity #Edge #GRIT #HTTP #InfoSec #Mac #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault

  4. PEEP: A Browser RAT Posing as a Chrome Extension

    PEEP is a Chromium-based post-exploitation toolkit disguised as 'Smart Bookmarks' that transforms Chrome and Edge browsers into persistent backdoors. Requiring prior administrative access, it bypasses Web Store security by forging Chromium integrity values and uses native-messaging to extend beyond browser telemetry to full host-level command execution. The malware beacons every 30 seconds over unencrypted HTTP, exfiltrating browsing history, cookies, credentials, and session data. Built on the open-source RedExt framework with significant enhancements, PEEP combines browser surveillance with filesystem manipulation, shell command execution, and process discovery. The infrastructure exposed development artifacts including source code, signing keys, and Traditional Chinese testing logs, indicating a Chinese-speaking operator using AI-assisted development. The toolkit demonstrates sophisticated persistence through HMAC forgery, enterprise policies, and ScriptCache manipulation.

    Pulse ID: 6a9eb13dfccfac432c46d96e
    Pulse Link: otx.alienvault.com/pulse/6a9eb
    Pulse Author: AlienVault
    Created: 2026-09-07 12:42:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chinese #Chrome #ChromeExtension #Cookies #CyberSecurity #Edge #GRIT #HTTP #InfoSec #Mac #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault

  5. PEEP: A Browser RAT Posing as a Chrome Extension

    PEEP is a Chromium-based post-exploitation toolkit disguised as 'Smart Bookmarks' that transforms Chrome and Edge browsers into persistent backdoors. Requiring prior administrative access, it bypasses Web Store security by forging Chromium integrity values and uses native-messaging to extend beyond browser telemetry to full host-level command execution. The malware beacons every 30 seconds over unencrypted HTTP, exfiltrating browsing history, cookies, credentials, and session data. Built on the open-source RedExt framework with significant enhancements, PEEP combines browser surveillance with filesystem manipulation, shell command execution, and process discovery. The infrastructure exposed development artifacts including source code, signing keys, and Traditional Chinese testing logs, indicating a Chinese-speaking operator using AI-assisted development. The toolkit demonstrates sophisticated persistence through HMAC forgery, enterprise policies, and ScriptCache manipulation.

    Pulse ID: 6a9eb13dfccfac432c46d96e
    Pulse Link: otx.alienvault.com/pulse/6a9eb
    Pulse Author: AlienVault
    Created: 2026-09-07 12:42:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chinese #Chrome #ChromeExtension #Cookies #CyberSecurity #Edge #GRIT #HTTP #InfoSec #Mac #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault

  6. Malicious Chrome Extension Can Steal Login Sessions and Turn PCs Into Remote Backdoors

    Indicators extracted from public reporting. Source: socradar.io/blog/peep-browser-

    Pulse ID: 6a9e7c2ce1129dcc5ae37c04
    Pulse Link: otx.alienvault.com/pulse/6a9e7
    Pulse Author: CyberHunter_NL
    Created: 2026-09-07 08:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chrome #ChromeExtension #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #bot #CyberHunter_NL

  7. Malicious Chrome Extension Can Steal Login Sessions and Turn PCs Into Remote Backdoors

    Indicators extracted from public reporting. Source: socradar.io/blog/peep-browser-

    Pulse ID: 6a9e7c2ce1129dcc5ae37c04
    Pulse Link: otx.alienvault.com/pulse/6a9e7
    Pulse Author: CyberHunter_NL
    Created: 2026-09-07 08:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chrome #ChromeExtension #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #bot #CyberHunter_NL

  8. Malicious Chrome Extension Can Steal Login Sessions and Turn PCs Into Remote Backdoors

    Indicators extracted from public reporting. Source: socradar.io/blog/peep-browser-

    Pulse ID: 6a9e7c2ce1129dcc5ae37c04
    Pulse Link: otx.alienvault.com/pulse/6a9e7
    Pulse Author: CyberHunter_NL
    Created: 2026-09-07 08:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chrome #ChromeExtension #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #bot #CyberHunter_NL

  9. Malicious Chrome Extension Can Steal Login Sessions and Turn PCs Into Remote Backdoors

    Indicators extracted from public reporting. Source: socradar.io/blog/peep-browser-

    Pulse ID: 6a9e7c2ce1129dcc5ae37c04
    Pulse Link: otx.alienvault.com/pulse/6a9e7
    Pulse Author: CyberHunter_NL
    Created: 2026-09-07 08:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chrome #ChromeExtension #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #bot #CyberHunter_NL

  10. Malicious Chrome Extension Can Steal Login Sessions and Turn PCs Into Remote Backdoors

    Indicators extracted from public reporting. Source: socradar.io/blog/peep-browser-

    Pulse ID: 6a9e7c2ce1129dcc5ae37c04
    Pulse Link: otx.alienvault.com/pulse/6a9e7
    Pulse Author: CyberHunter_NL
    Created: 2026-09-07 08:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chrome #ChromeExtension #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #bot #CyberHunter_NL

  11. Inside Kimsuky's Abuse of Legitimate Remote Control Tools Across Northeast Asia

    Kimsuky conducted spear phishing campaigns against South Korean and Japanese targets during the first half of 2026, distributing LNK malware through OneDrive share links. The malicious files established scheduled tasks that periodically fetched PowerShell scripts from command-and-control servers to profile systems, exfiltrate Thunderbird and Outlook email data, and log keystrokes. The threat actor installed legitimate remote control software including Chrome Remote Desktop and AnyDesk to evade antivirus detection and maintain multiple access channels. A malicious Chrome extension designed to steal Gmail data exhibited characteristics of AI-generated code, featuring Korean comments, debug strings, and Unicode emoji throughout. The operation employed rotating infrastructure and compromised legitimate Korean servers as command-and-control nodes to impede tracking efforts.

    Pulse ID: 6a873495a873c0ec3c6d9880
    Pulse Link: otx.alienvault.com/pulse/6a873
    Pulse Author: AlienVault
    Created: 2026-08-20 17:08:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AnyDesk #Asia #Chrome #ChromeExtension #CyberSecurity #EDR #Email #ICS #InfoSec #Japan #Kimsuky #Korea #LNK #Malware #OTX #OpenThreatExchange #Outlook #Phishing #PowerShell #RAT #SouthKorea #SpearPhishing #UK #bot #AlienVault

  12. Chrome-расширение для Upwork: архитектура, метрики и опыт разработки с помощью ИИ

    В свободное время я периодически захожу на Upwork, чтобы посмотреть, какие проекты там сейчас появляются и как устроен рынок изнутри. Если убрать фильтры и посмотреть общий поток вакансий, довольно быстро становится видно типичную картину: большое количество разработчиков конкурируют за очень стандартные и недорогие задачи. В таких условиях основная проблема смещается не на поиск интересных проектов, а на скорость их обработки и подачи предложений. Это особенно заметно в сегменте разработчиков, которые работают на массовом рынке: важно быстро отсекать нерелевантные предложения и экономить connects. Именно это стало отправной точкой для идеи Chrome-расширения, которое добавляет слой аналитики поверх списка проектов Upwork и позволяет быстрее принимать решение, стоит ли откликаться на вакансию.

    habr.com/ru/articles/1045212/

    #ChromeExtension #Upwork #LLM #AIAssistedDevelopment #TypeScript #Rust #PostgreSQL #Embeddings #SystemArchitecture

  13. Hidden Chrome Extension 🔍
    This Chrome extension is a life-saver: "Workona"
    Organize tabs, sessions, notes everything in one click.
    You’ll never lose your workflow agai
    💻

    #ChromeExtension #Tech #WorkSmarter #Hack #Technology #Techno #tool #Extension #interesting #cool #tips