A new Chrome browser highjacking attack could affect billions of users – here’s how to fight it

Posted by:
Olivia Smith
Sat, 08 Feb
0 Comment
Feature image

A new highjacking attack targets Chrome browsers

A significant security threat has emerged for Google Chrome users, potentially putting billions at risk. Known as ‘Browser Syncjacking,’ this attack method allows hackers to gain access to a victim’s entire browser data and even compromise their operating system.

How the attack works:

Security researchers at SquareX have uncovered the alarming details of the attack. Hackers create a malicious Google Workspace domain with disabled security features, set up managed profiles on victim devices, and introduce a deceptive Chrome extension on the official Chrome Store. Once installed, the extension covertly logs the victim into a hacker’s Workspace profile, granting access to sensitive information like browsing history and passwords.

The implications:

Once a victim’s browser is compromised, the hacker can manipulate it further through tactics like injecting malicious content into seemingly innocuous Zoom invites. By tricking victims into updating Zoom with a disguised malware-containing file, hackers can ultimately assume full control over the victim’s browser, potentially leading to data breaches and privacy violations.

Staying safe online:

To mitigate the risk of falling victim to such attacks, users are advised to limit the installation of Chrome extensions, conduct thorough research on extensions and developers before installation, maintain reliable antivirus software, utilize password managers for enhanced security, and exercise caution when downloading software. By staying vigilant and mindful of online activities, users can better protect themselves against potential cyber threats.

In related news: Google Chrome extensions hit in a significant attack impacting multiple developers, prompting users to remain vigilant.

For users who rely on Chrome in work settings, Google is working on enhancing IT admins’ control over extension usage, providing added security measures.

Google Chrome users may soon benefit from an AI-powered feature aimed at reducing intrusive internet pop-ups, offering a smoother browsing experience.

Tags:

0 0 votes
Article Rating
Subscribe
Notify of
guest

0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments