home.social

#chromeextension — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #chromeextension, aggregated by home.social.

  1. PEEP: A Browser RAT Posing as a Chrome Extension

    PEEP is a Chromium-based post-exploitation toolkit disguised as 'Smart Bookmarks' that transforms Chrome and Edge browsers into persistent backdoors. Requiring prior administrative access, it bypasses Web Store security by forging Chromium integrity values and uses native-messaging to extend beyond browser telemetry to full host-level command execution. The malware beacons every 30 seconds over unencrypted HTTP, exfiltrating browsing history, cookies, credentials, and session data. Built on the open-source RedExt framework with significant enhancements, PEEP combines browser surveillance with filesystem manipulation, shell command execution, and process discovery. The infrastructure exposed development artifacts including source code, signing keys, and Traditional Chinese testing logs, indicating a Chinese-speaking operator using AI-assisted development. The toolkit demonstrates sophisticated persistence through HMAC forgery, enterprise policies, and ScriptCache manipulation.

    Pulse ID: 6a9eb13dfccfac432c46d96e
    Pulse Link: otx.alienvault.com/pulse/6a9eb
    Pulse Author: AlienVault
    Created: 2026-09-07 12:42:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chinese #Chrome #ChromeExtension #Cookies #CyberSecurity #Edge #GRIT #HTTP #InfoSec #Mac #Malware #OTX #OpenThreatExchange #RAT #RCE #bot #AlienVault

  2. Malicious Chrome Extension Can Steal Login Sessions and Turn PCs Into Remote Backdoors

    Indicators extracted from public reporting. Source: socradar.io/blog/peep-browser-

    Pulse ID: 6a9e7c2ce1129dcc5ae37c04
    Pulse Link: otx.alienvault.com/pulse/6a9e7
    Pulse Author: CyberHunter_NL
    Created: 2026-09-07 08:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #BackDoor #Browser #Chrome #ChromeExtension #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #bot #CyberHunter_NL

  3. Inside Kimsuky's Abuse of Legitimate Remote Control Tools Across Northeast Asia

    Kimsuky conducted spear phishing campaigns against South Korean and Japanese targets during the first half of 2026, distributing LNK malware through OneDrive share links. The malicious files established scheduled tasks that periodically fetched PowerShell scripts from command-and-control servers to profile systems, exfiltrate Thunderbird and Outlook email data, and log keystrokes. The threat actor installed legitimate remote control software including Chrome Remote Desktop and AnyDesk to evade antivirus detection and maintain multiple access channels. A malicious Chrome extension designed to steal Gmail data exhibited characteristics of AI-generated code, featuring Korean comments, debug strings, and Unicode emoji throughout. The operation employed rotating infrastructure and compromised legitimate Korean servers as command-and-control nodes to impede tracking efforts.

    Pulse ID: 6a873495a873c0ec3c6d9880
    Pulse Link: otx.alienvault.com/pulse/6a873
    Pulse Author: AlienVault
    Created: 2026-08-20 17:08:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AnyDesk #Asia #Chrome #ChromeExtension #CyberSecurity #EDR #Email #ICS #InfoSec #Japan #Kimsuky #Korea #LNK #Malware #OTX #OpenThreatExchange #Outlook #Phishing #PowerShell #RAT #SouthKorea #SpearPhishing #UK #bot #AlienVault

  4. 🤖🔥 Oh joy, AI-generated drivel is suffocating LinkedIn like never before! Someone finally created a Chrome extension to filter the endless stream of corporate nonsense – too bad it won't help you escape the abyss of motivational platitudes and business buzzword bingo! 🚀💼
    pangram.com/blog/ai-in-your-fe #AIgeneratedContent #LinkedInFilter #CorporateNonsense #BuzzwordBingo #ChromeExtension #HackerNews #ngated

  5. 🎉 Behold, the world-changing #innovation we never asked for: a Chrome extension that adds a touch of #chaos to your video watching by speeding up or slowing down based on the speaker’s verbal diarrhea! 🤯 Because who doesn’t love their TED talks to sound like auctioneers on caffeine, or their #ASMR videos to drag on like a snail on tranquilizers? 🙄
    github.com/ywong137/speech-spe #videoediting #Chromeextension #TEDtalks #HackerNews #ngated