Two malicious Chrome extensions impersonating legitimate tools exfiltrated sensitive user conversations and browser data, impacting over 900,000 downloads. These extensions abused hosting infrastructure to steal chat data and URL information, risking corporate and personal security. #ChatGPT #DeepSeekAI #AITOPIA #BrowserSecurity
Keypoints
- The malicious extensions mimicked legitimate AITOPIA tools to deceive users.
- They collected URLs, search queries, session tokens, and user IDs from browsers.
- Over 900,000 users downloaded these extensions before removal from the Chrome Web Store.
- The stolen data included chat conversations, source code, PII, and confidential business information.
- Affected organizations could face espionage, identity theft, or targeted phishing attacks.
Read More: https://www.securityweek.com/chrome-extensions-with-900000-downloads-caught-stealing-ai-chats/