{"id":28082,"date":"2020-06-18T21:38:00","date_gmt":"2020-06-18T21:38:00","guid":{"rendered":"https:\/\/icrowdnewswire.com\/?p=2606284"},"modified":"2020-06-18T21:38:00","modified_gmt":"2020-06-18T21:38:00","slug":"criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected","status":"publish","type":"post","link":"https:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/","title":{"rendered":"Criminal ring of Chrome spyware extensions exposed, millions of users affected"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" width=\"233\" height=\"24\" src=\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"display: block; margin-bottom: 5px; clear:both;max-width: 100%;\" link_thumbnail=\"\" \/><\/p>\n<ul>\n<li>A third-party security team discovered a ring of Chrome spyware extensions all working together.<\/li>\n<li>The extensions were apparently downloaded over 32 million times, affecting millions of Chrome browsers.<\/li>\n<li>This news once again illuminates how weak Google&rsquo;s oversight of Chrome extensions really is.<\/li>\n<\/ul>\n<p>In yet another instance of&nbsp;<a href=\"https:\/\/www.androidauthority.com\/best-google-products-1038479\/\">Google<\/a>&nbsp;dropping the ball when it comes to Chrome spyware, a security research team called&nbsp;<a href=\"https:\/\/awakesecurity.com\/\" target=\"_blank\" rel=\"noopener noreferrer\" data-vars-outbound-link=\"https:\/\/awakesecurity.com\/\">Awake Security<\/a>&nbsp;found a ring of extensions all working together that compromised the security and privacy of millions of users.<\/p>\n<p>After informing Google of the problematic Chrome spyware, Google removed over 70 extensions from the platform (via&nbsp;<a href=\"https:\/\/www.reuters.com\/article\/us-alphabet-google-chrome-exclusive-idUSKBN23P0JO\" target=\"_blank\" rel=\"noopener noreferrer\" data-vars-outbound-link=\"https:\/\/www.reuters.com\/article\/us-alphabet-google-chrome-exclusive-idUSKBN23P0JO\"><em>Reuters<\/em><\/a>). However, those extensions and others that were part of the focused and organized attacks have already been downloaded over 32 million times.<\/p>\n<p>Awake Security estimates this is the most far-reaching Chrome spyware effort to date. However, Google declined to verify that claim. It also declined to explain why it did not catch the activity itself.<\/p>\n<h2>This Chrome spyware campaign was massive<\/h2>\n<p>These Chrome spyware extensions were usually disguised as tools that would, ironically, protect users from malicious sites. Some were also legitimate tools that would convert files from one format to another. However, while running, all the extensions could secretly siphon data from the user&rsquo;s internet activity.<\/p>\n<p>Using this data, the attackers could then obtain credentials for accessing both personal and corporate information. With so much business software usage happening in browsers nowadays, personal email accounts are no longer a big prize for attackers. Instead, Chrome spyware can obtain things like payroll records, corporate credit card accounts, and other highly sensitive information.<\/p>\n<p>To avoid detection, the extensions would only transmit data from one server to another when the user was not using security software. In other words, the Chrome spyware was smart enough to know if security protocols were in place and then kill its illegal activity in response.<\/p>\n<h2>How did Google not see this?<\/h2>\n<p>According to Awake Security, the information collected by these Chrome spyware applications bounced around a criminal network of over 15,000 domains. Almost all of those domains were purchased from just one registrar called Galcomm, based in Israel.<\/p>\n<p>When contacted by&nbsp;<em>Reuters<\/em>, Galcomm denied any involvement with the criminal ring of apps. However, Awake Security contacted Galcomm multiple times during its investigation, with Galcomm never responding.&nbsp;<em>Reuters<\/em>&nbsp;also tried to give Galcomm a list of the domains used to transmit the stolen data a whopping three times, with Galcomm never giving a substantial response to any of the messages.<\/p>\n<p>With 15,000 domains, nearly 100 Chrome spyware extensions, and 32 million downloads, one begins to wonder how Google didn&rsquo;t find this on its own.<\/p>\n<p>This isn&rsquo;t the first time Google&rsquo;s dropped the ball like this, either. Although the company&nbsp;<a href=\"https:\/\/www.androidauthority.com\/chrome-extensions-inline-875448\/\">continues to tighten up security<\/a>&nbsp;surrounding&nbsp;<a href=\"https:\/\/www.androidauthority.com\/crypto-extensions-851536\/\">Chrome extensions and how they work<\/a>, it still hasn&rsquo;t mastered a method of preventing these kinds of problems. Google mostly relies on algorithms to detect malicious activity within the Chrome ecosystem and has said it is&nbsp;<a href=\"https:\/\/blog.chromium.org\/2018\/10\/trustworthy-chrome-extensions-by-default.html\" target=\"_blank\" rel=\"noopener noreferrer\" data-vars-outbound-link=\"https:\/\/blog.chromium.org\/2018\/10\/trustworthy-chrome-extensions-by-default.html\">involving more human interaction<\/a>&nbsp;to increase efficacy. However, clearly, there&rsquo;s more room for improvement.<\/p>\n<p>As of now, the safest way to avoid installing a Chrome spyware extension is to only download those that are created by established, high-profile organizations.<\/p>\n<p class=\"tags\">\n<div><strong>See Campaign: <\/strong><a href=\"https:\/\/www.androidauthority.com\/chrome-spyware-extensions-1130325\/\" target=\"_blank\">https:\/\/www.androidauthority.com\/chrome-spyware-extensions-1130325\/<\/a><br \/><b>Contact Information:<\/b><br \/>C. Scott Brown<\/p>\n<p><b>Tags:<\/b><br \/><a href=\"\"><\/a>, <a href=\"https:\/\/icrowdnewswire.com\/category\/news-category\/wire\/\" rel=\"category tag\">Wire<\/a>, <a href=\"https:\/\/icrowdnewswire.com\/category\/global-regions\/united-states\/\" rel=\"category tag\">United States<\/a>, <a href=\"https:\/\/icrowdnewswire.com\/category\/language\/english\/\" rel=\"category tag\">English<\/a><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" src=\"\" alt=\"image\" width=\"400\" height=\"300\" class=\"cwdfimg\" \/><\/div>\n<div>\n<h3>Contact Information:<\/h3>\n<p>C. Scott Brown<\/p>\n<\/p><\/div>\n","protected":false},"excerpt":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" width=\"233\" height=\"24\" src=\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png\" alt=\"\">A third-party security team discovered a ring of Chrome spyware extensions all working together. The extensions were apparently downloaded over 32 million times, affecting millions of Chrome browsers. This news once again illuminates how weak Google&rsquo;s oversight of Chrome extensions really is. In yet another instance of&nbsp;Google&nbsp;dropping the ball when it comes to Chrome spyware, &hellip; <a href=\"https:\/\/icrowdnewswire.com\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\">Continue reading <span>Criminal ring of Chrome spyware extensions exposed, millions of users affected<\/span><\/a> <a href=\"https:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\" class=\"more-link\">Continue Reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":106,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3,22,54],"tags":[],"class_list":["post-28082","post","type-post","status-publish","format-standard","hentry","category-english","category-united-states","category-wire"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v24.9 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Criminal ring of Chrome spyware extensions exposed, millions of users affected - Business<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Criminal ring of Chrome spyware extensions exposed, millions of users affected - Business\" \/>\n<meta property=\"og:description\" content=\"A third-party security team discovered a ring of Chrome spyware extensions all working together. The extensions were apparently downloaded over 32 million times, affecting millions of Chrome browsers. This news once again illuminates how weak Google&rsquo;s oversight of Chrome extensions really is. In yet another instance of&nbsp;Google&nbsp;dropping the ball when it comes to Chrome spyware, &hellip; Continue reading Criminal ring of Chrome spyware extensions exposed, millions of users affected Continue Reading &rarr;\" \/>\n<meta property=\"og:url\" content=\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\" \/>\n<meta property=\"og:site_name\" content=\"Business\" \/>\n<meta property=\"article:published_time\" content=\"2020-06-18T21:38:00+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png\" \/>\n<meta name=\"author\" content=\"Waqas Awan\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Waqas Awan\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\",\"url\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\",\"name\":\"Criminal ring of Chrome spyware extensions exposed, millions of users affected - Business\",\"isPartOf\":{\"@id\":\"https:\/\/ipsnews.net\/business\/#website\"},\"primaryImageOfPage\":{\"@id\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#primaryimage\"},\"image\":{\"@id\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png\",\"datePublished\":\"2020-06-18T21:38:00+00:00\",\"author\":{\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/46e7a3c31ebaa3d111acaa0daf39976f\"},\"breadcrumb\":{\"@id\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#primaryimage\",\"url\":\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png\",\"contentUrl\":\"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/ipsnews.net\/business\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Criminal ring of Chrome spyware extensions exposed, millions of users affected\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/ipsnews.net\/business\/#website\",\"url\":\"https:\/\/ipsnews.net\/business\/\",\"name\":\"Business\",\"description\":\"\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/ipsnews.net\/business\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/46e7a3c31ebaa3d111acaa0daf39976f\",\"name\":\"Waqas Awan\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/ipsnews.net\/business\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/3453ff882f8bf8f7e605d09dc0750c5759cb895a2d09c18a38d07b424e7f6a29?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/3453ff882f8bf8f7e605d09dc0750c5759cb895a2d09c18a38d07b424e7f6a29?s=96&d=mm&r=g\",\"caption\":\"Waqas Awan\"},\"sameAs\":[\"https:\/\/icrowdnewswire.com\/fc\"],\"url\":\"https:\/\/ipsnews.net\/business\/author\/waqas-awan\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Criminal ring of Chrome spyware extensions exposed, millions of users affected - Business","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/","og_locale":"en_US","og_type":"article","og_title":"Criminal ring of Chrome spyware extensions exposed, millions of users affected - Business","og_description":"A third-party security team discovered a ring of Chrome spyware extensions all working together. The extensions were apparently downloaded over 32 million times, affecting millions of Chrome browsers. This news once again illuminates how weak Google&rsquo;s oversight of Chrome extensions really is. In yet another instance of&nbsp;Google&nbsp;dropping the ball when it comes to Chrome spyware, &hellip; Continue reading Criminal ring of Chrome spyware extensions exposed, millions of users affected Continue Reading &rarr;","og_url":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/","og_site_name":"Business","article_published_time":"2020-06-18T21:38:00+00:00","og_image":[{"url":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png","type":"","width":"","height":""}],"author":"Waqas Awan","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Waqas Awan","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/","url":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/","name":"Criminal ring of Chrome spyware extensions exposed, millions of users affected - Business","isPartOf":{"@id":"https:\/\/ipsnews.net\/business\/#website"},"primaryImageOfPage":{"@id":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#primaryimage"},"image":{"@id":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#primaryimage"},"thumbnailUrl":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png","datePublished":"2020-06-18T21:38:00+00:00","author":{"@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/46e7a3c31ebaa3d111acaa0daf39976f"},"breadcrumb":{"@id":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#primaryimage","url":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png","contentUrl":"https:\/\/icrowdnewswire.com\/wp-content\/uploads\/2020\/06\/4126-logo-1-711.png"},{"@type":"BreadcrumbList","@id":"http:\/\/ipsnews.net\/business\/2020\/06\/18\/criminal-ring-of-chrome-spyware-extensions-exposed-millions-of-users-affected\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/ipsnews.net\/business\/"},{"@type":"ListItem","position":2,"name":"Criminal ring of Chrome spyware extensions exposed, millions of users affected"}]},{"@type":"WebSite","@id":"https:\/\/ipsnews.net\/business\/#website","url":"https:\/\/ipsnews.net\/business\/","name":"Business","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/ipsnews.net\/business\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/46e7a3c31ebaa3d111acaa0daf39976f","name":"Waqas Awan","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/ipsnews.net\/business\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/3453ff882f8bf8f7e605d09dc0750c5759cb895a2d09c18a38d07b424e7f6a29?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/3453ff882f8bf8f7e605d09dc0750c5759cb895a2d09c18a38d07b424e7f6a29?s=96&d=mm&r=g","caption":"Waqas Awan"},"sameAs":["https:\/\/icrowdnewswire.com\/fc"],"url":"https:\/\/ipsnews.net\/business\/author\/waqas-awan\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/28082","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/users\/106"}],"replies":[{"embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/comments?post=28082"}],"version-history":[{"count":1,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/28082\/revisions"}],"predecessor-version":[{"id":28083,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/posts\/28082\/revisions\/28083"}],"wp:attachment":[{"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/media?parent=28082"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/categories?post=28082"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/ipsnews.net\/business\/wp-json\/wp\/v2\/tags?post=28082"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}