This trick has already managed to deceive some security experts
The dream of the typical IT criminal is to make attacks without lifting suspicions between their victims. The more a discreet attack, the more effective tends to be. An unidentified group has achieved this goal for a while: it was able to tamper with Google Chrome’s legitimate extensions, so users ended up infecting their computers unconsciously.
The most curious of this attack is that one of the committed extensions belonged to Cyberhaven, a company prevention company. Who could suspect your supplement to the browser? Maybe none of his customers – but the harmful code was there, trying to steal some private information from users.
Extensions with malware to steal company account from Facebook
The purpose of the criminals was appropriate to Facebook’s company account accounts. Although this social network has already come out of fashion for many, it still has a huge amount of users and, moreover, it is a key piece in the digital marketing actions of many companies, since its tools are also connected to other goal networks, such as Instagram.
A Cyberhaven analysis – Yes, the same that has been attacked – details that compromised extensions collected information such as the Facebook access token and the user ID. They also tried to obtain data on the account via the API and sent all this information, together with Facebook cookies to a command and control server.
The big question is: how to infect a …
Related materials
Source: Terra

Rose James is a Gossipify movie and series reviewer known for her in-depth analysis and unique perspective on the latest releases. With a background in film studies, she provides engaging and informative reviews, and keeps readers up to date with industry trends and emerging talents.