【】

Some 37,000 people downloaded a spam version of the "AdBlock Plus" extension from Google after a fraudulent ad blocking extension snuck through Google Chrome's verification process and appeared in the Chrome Web Store yesterday.
It's easy to see why Google (and some 37,000 people) were tricked — the developer who packaged the adware into an extension used the name of an already popular and legitimate extension, AdBlock Plus.
SEE ALSO:Whoops, a hacker found a way to steal your passwords from macOS High SierraAdditionally, the bogus page in the Chrome store came with reviews. In short, the fraudulent extension looked pretty realistic. Twitter user SwiftOnSecurity, who regularly tweets about web security, posted an image of the devious extension:
Google allows 37,000 Chrome users to be tricked with a fake extension by fraudulent developer who clones popular name and spams keywords. pic.twitter.com/ZtY5WpSgLt
— SwiftOnSecurity (@SwiftOnSecurity) October 9, 2017
Google eventually caught wind of the breach and removed the deceitful adware, but it remains unclear just how harmful the malware is for those who already downloaded the extension. At least one unfortunate user says they're being hit with ads. In a screenshot of a review, posted by SwiftOnSecurity, the user states that the "instant this was added to Chrome started getting invasive ads with high volume levels opening new tabs."
Though Google took down the adware, SwiftOnSecurity was unimpressed by Google's failure to stop this malware from sneaking through and ending up conspicuously displayed in the Chrome store in the first place:
Legitimate developers just have to sit back and watch as Google smears them with fake extensions that steal their good name pic.twitter.com/3Tnv4NtY9t
— SwiftOnSecurity (@SwiftOnSecurity) October 9, 2017
The 37,000 infected users probably hope this public shaming further motivates Google to buffer the Chrome store's verification process. After all, malicious developers will only get more inventive if the problem isn't fixed.
Featured Video For You
This guy has 1,500 passwords, and a few tips for staying secure
TopicsCybersecurity
相关文章
Twitter grants everyone access to quality filter for tweet notifications
Twitter introduced two features Thursday in an effort to give users more control on what notificatio2025-07-02Wordle today: The answer and hints for May 31
Oh hey there! If you're here, it must be time for Wordle. As always, we're serving up our daily hint2025-07-02Shop Apple's education pricing and get a $150 gift card
GET A GIFT CARD WORTH UP TO $150:Apple rarely has discounts on its products, but leading up to back-2025-07-02Facebook and Instagram might face huge fines over its personalized ad model
A European Commission (EU) investigation is spelling bad news for Facebook and Instagram.The EU has2025-07-02Dog elected for third term as mayor of Minnesota town
Hopefully he has a human chief of staff. 。Duke the Great Pyrenees is the only dog that's ever been el2025-07-02WWDC 2024 Sam Altman spotted as OpenAI partnership rumors heat up
Sam Altman, the chief executive and co-founder of OpenAI, was spotted at WWDC 2024 on June 10.It's n2025-07-02
最新评论