Beware of Malicious ChatGPT Chrome Extension Hijacking Facebook Accounts.

1 min read
Source: The Hacker News
Beware of Malicious ChatGPT Chrome Extension Hijacking Facebook Accounts.
Photo: The Hacker News
TL;DR Summary

A fake ChatGPT Chrome browser extension, posing as OpenAI's ChatGPT service, has been removed from the official Web Store after harvesting Facebook session cookies and hijacking accounts. The extension was propagated through malicious sponsored Google search results and attracted over 9,000 installations before its removal. Once installed, it stealthily captured Facebook-related cookies and exfiltrated them to a remote server, allowing the threat actor to seize control of the Facebook account and disseminate extremist propaganda. This is the second fake ChatGPT Chrome browser extension to be discovered, highlighting the adaptability of cybercriminals to distribute malware and stage opportunistic attacks.

Share this article

Reading Insights

Total Reads

0

Unique Readers

16

Time Saved

1 min

vs 2 min read

Condensed

73%

36198 words

Want the full story? Read the original article

Read on The Hacker News