From Everyday Essentials to Must-Have Deals, We’ve Got You Covered

Malicious AI Extensions Compromise 300,000 Chrome Users


A widespread cyberattack involving fraudulent Google Chrome extensions has impacted over 300,000 users by leveraging the current demand for artificial intelligence tools. An investigation by security firm LayerX has identified a coordinated operation dubbed “AiFrame,” which utilized more than 30 malicious add-ons to steal credentials, private emails, and browsing history.

The malicious extensions successfully bypassed initial scrutiny on the official Chrome Web Store by appearing as legitimate AI sidebars, translators, and assistants. Among the most popular were:

  • Gemini AI Sidebar: 80,000 installations.

  • AI Sidebar: 70,000 installations.

  • AI Assistant: 60,000 installations.

  • ChatGPT Translate: 30,000 installations.

Technically, these extensions shared nearly identical JavaScript logic and backend infrastructure. Instead of processing AI functions locally, they loaded full-screen iframes from remote domains. This allowed the attackers to alter the extensions’ behavior dynamically without submitting new versions for store review, effectively evading security updates.

While users believed they were interacting with AI tools, the plugins were exfiltrating sensitive data in the background. A subset of 15 extensions specifically targeted Gmail. When a user accessed their inbox, scripts would trigger to read visible message content and even capture email drafts.

When users utilized “AI features” to summarize or reply to messages, the content was transmitted directly to attacker-controlled servers. Furthermore, some extensions included voice recognition capabilities to transcribe audio and send transcriptions to remote servers.

Mitigation and Safety Recommendations

Security experts advise users to immediately audit their browser extensions against the indicators of compromise published by LayerX. If any of the identified malicious tools are present, they should be uninstalled immediately. Additionally, affected users are strongly encouraged to reset passwords for all sensitive accounts, particularly Gmail and other platforms accessed during the infection period.

Trending Products

- 39% HP 2024 Laptop | 15.6″ FHD (1...
Original price was: $983.98.Current price is: $599.99.

HP 2024 Laptop | 15.6″ FHD (1...

0
Add to compare
- 24% Lenovo V-Series V15 Business Laptop...
Original price was: $988.68.Current price is: $749.00.

Lenovo V-Series V15 Business Laptop...

0
Add to compare
- 7% HP 24mh FHD Pc Monitor with 23.8-In...
Original price was: $159.99.Current price is: $148.00.

HP 24mh FHD Pc Monitor with 23.8-In...

0
Add to compare
- 42% Thermaltake Ceres 300 Matcha Green ...
Original price was: $171.98.Current price is: $99.99.

Thermaltake Ceres 300 Matcha Green ...

0
Add to compare
- 5% ASUS TUF Gaming 27″ 1080P Mon...
Original price was: $199.00.Current price is: $189.00.

ASUS TUF Gaming 27″ 1080P Mon...

0
Add to compare
- 31% Acer Nitro 27″ WQHD 2560 x 14...
Original price was: $289.99.Current price is: $199.99.

Acer Nitro 27″ WQHD 2560 x 14...

0
Add to compare
- 28% CORSAIR iCUE 4000X RGB Tempered Gla...
Original price was: $144.99.Current price is: $104.99.

CORSAIR iCUE 4000X RGB Tempered Gla...

0
Add to compare
- 32% SAMSUNG 32-Inch ViewFinity S7 (S70D...
Original price was: $399.99.Current price is: $270.99.

SAMSUNG 32-Inch ViewFinity S7 (S70D...

0
Add to compare
- 23% Wi-fi Keyboard and Mouse Combo, Lov...
Original price was: $29.99.Current price is: $22.99.

Wi-fi Keyboard and Mouse Combo, Lov...

0
Add to compare
- 37% Lian Li O11 Vision -Three Sided Tem...
Original price was: $223.98.Current price is: $139.99.

Lian Li O11 Vision -Three Sided Tem...

0
Add to compare
.
We will be happy to hear your thoughts

Leave a reply

BargainFindsCo
Logo
Register New Account
Compare items
  • Total (0)
Compare
0
Shopping cart