winjer
Member
Cyberhaven Incident
Stay updated on the latest developments of the Chrome Web Store incident involving Cyberhaven's compromised extension. Follow live updates, detailed analysis, impacted extensions, and expert recommendations for safeguarding your organization against similar attacks
www.extensiontotal.com
This is the list of extensions affected, parsed by those that are still compromised and those that are already fixed.
"At this moment the scope of the compromised extensions seems to be contained, so far a total of 36 compromised Chrome extensions were detected (IOCs at the bottom of the page). We continue to monitor in order to detect further infections / copycat threat actors. We are working closely with affected organizations to help handle compromised users."
Widespread cyberattack targets Google Chrome extensions, compromises 2.6 million devices
The attack, which began on Christmas Eve, exploited a vulnerability in the Chrome Web Store's developer authentication system. Attackers used sophisticated spear-phishing techniques to gain access to...
www.techspot.com
If you are using any of these extensions on a Chromium browser, remove them immediately. And wait until the devs regain control of their accounts and fix the compromised extensions.
Another option is to use Firefox or Librewolf.