I found a bunch of malicious extensions in Chrome Web Store, with disguised functionality to commit affiliate fraud and collect browsing profiles. But that isn’t the interesting part, there is plenty of that in Chrome Web Store.
These extensions appear related to the Karma shopping assistant, with some strong indicators hinting towards them being developed by Karma Shopping Ltd. In case you are unfamiliar with the company, they employ more than 50 people and secured at least $28 million in funding.
Yes, they are presenting themselves as an innovative company of course.
https://palant.info/2024/10/30/the-karma-connection-in-chrome-web-store/
=> More informations about this toot | View the thread | More toots from WPalant@infosec.exchange
text/gemini
This content has been proxied by September (3851b).