Cybersecurity researchers have discovered a new campaign in which a cluster of 108 Google Chrome extensions has been found to communicate with the same command-and-control (C2) infrastructure with the goal of collecting user data and enabling browser-level abuse by injecting ads and arbitrary JavaScript code into every web page visited.According to Socket, the extensions are published
First seen on thehackernews.com
Jump to article: thehackernews.com/2026/04/108-malicious-chrome-extensions-steal.html
![]()

