Close Menu

    Subscribe to Updates

    Get the latest tech news from Tallwire.

      What's Hot

      Artemis II Splashdown Signals A Step Closer to Mass Space Travel

      April 12, 2026

      Anthropic Code Leak Raises Questions About AI Security and Industry Oversight

      April 8, 2026

      NASA Astronauts Use iPhones to Capture Historic Artemis II Mission Images

      April 8, 2026
      Facebook X (Twitter) Instagram
      • Tech
      • AI
      • Get In Touch
      Facebook X (Twitter) LinkedIn
      TallwireTallwire
      • Tech

        NASA Astronauts Use iPhones to Capture Historic Artemis II Mission Images

        April 8, 2026

        OpenAI Expands Influence With Strategic TBPN Media Acquisition

        April 8, 2026

        Cybersecurity Veteran Turns Focus To Drone Hacking After Decades Battling Malware

        April 6, 2026

        Anonymous Social App Surges In Saudi Arabia, Testing Limits Of Digital Freedom

        April 6, 2026

        Peter Thiel’s Bold Ag-Tech Gamble Signals High-Tech Disruption of Traditional Ranching

        April 6, 2026
      • AI

        Anthropic Code Leak Raises Questions About AI Security and Industry Oversight

        April 8, 2026

        The Rise Of Agentic AI Signals A Shift From Tools To Autonomous Digital Actors

        April 8, 2026

        AI Chatbots Draw Scrutiny As Teens Engage In Intimate Roleplay And Emotional Dependency

        April 8, 2026

        Ai-Powered Startup Signals Rise Of One-Person Billion-Dollar Companies

        April 8, 2026

        OpenAI Secures Historic $122 Billion Funding Round at $852 Billion Valuation

        April 7, 2026
      • Security

        Anthropic Code Leak Raises Questions About AI Security and Industry Oversight

        April 8, 2026

        DeFi Platform Drift Halts Operations After Multi-Million Dollar Crypto Hack

        April 7, 2026

        Fake WhatsApp App Exposes Users To Government Spyware Operation

        April 7, 2026

        ICE Deploys Controversial Spyware Tool In Drug Trafficking Investigations

        April 7, 2026

        Telehealth Firm Discloses Breach Amid Rising Digital Health Vulnerabilities

        April 6, 2026
      • Health

        European Crackdown Targets Social Media’s Impact on Children

        April 8, 2026

        AI Chatbots Draw Scrutiny As Teens Engage In Intimate Roleplay And Emotional Dependency

        April 8, 2026

        Australia Moves To Curb Social Media Addiction Among Youth With Expanded Under-16 Ban

        April 5, 2026

        Australia’s eSafety Regulator Warns Big Tech As Teens Circumvent Social Media Restrictions

        April 5, 2026

        Meta Finally Held Accountable For Harming Teens, But Real Reform Remains Uncertain

        April 2, 2026
      • Science

        Artemis II Splashdown Signals A Step Closer to Mass Space Travel

        April 12, 2026

        Peter Thiel’s Bold Ag-Tech Gamble Signals High-Tech Disruption of Traditional Ranching

        April 6, 2026

        White House Tech Advisor David Sacks Steps Down To Lead Presidential Science Advisory

        March 31, 2026

        Blue Origin’s Orbital Data Center Push Signals New Frontier in Tech Infrastructure

        March 27, 2026

        Quantum Cryptography Pioneers Awarded Computing’s Highest Honor

        March 25, 2026
      • Tech

        Peter Thiel’s Bold Ag-Tech Gamble Signals High-Tech Disruption of Traditional Ranching

        April 6, 2026

        Zuckerberg Quietly Offers Musk Support As Tech Titans Align Around Government Power

        April 4, 2026

        White House Tech Advisor David Sacks Steps Down To Lead Presidential Science Advisory

        March 31, 2026

        Another Billionaire Signals Exit As California’s Taxes Drives Out High-Profile Entrepreneurs

        March 28, 2026

        Bezos Eyes $100 Billion War Chest To Rewire Legacy Industry With AI

        March 28, 2026
      TallwireTallwire
      Home»Cybersecurity»Malicious Chrome Extensions Compromise 900,000 Users’ AI Chats and Browsing Data
      Cybersecurity

      Malicious Chrome Extensions Compromise 900,000 Users’ AI Chats and Browsing Data

      Updated:January 20, 20263 Mins Read
      Facebook Twitter Pinterest LinkedIn Tumblr Email
      Privacy Breach Erupts as Private Numbers of Political Leaders Surface Online
      Privacy Breach Erupts as Private Numbers of Political Leaders Surface Online
      Share
      Facebook Twitter LinkedIn Pinterest Email

      Cybersecurity researchers have uncovered a widespread threat campaign on the Google Chrome Web Store involving two seemingly legitimate browser extensions that together have been installed by at least 900,000 users and were covertly harvesting sensitive AI chatbot conversations and general browsing data before transmitting it to attacker-controlled servers. Industry analysts from OX Security reported that the malicious add-ons, which impersonated respected productivity tools and even bore Google’s “Featured” badge at one point, specifically scraped content from ChatGPT and DeepSeek interactions along with URLs and tab activity, presenting a serious risk for individuals and organizations alike given the volume of personal and professional communications potentially exposed to unknown third parties. Major tech outlets have now raised alarms over how these extensions used standard browser APIs to silently monitor activity in real time and how they cleverly gained user consent under misleading pretenses, highlighting ongoing challenges in securing browser extension ecosystems despite platform vetting efforts. Security experts are urging users to audit their installed extensions, remove unfamiliar add-ons, and reconsider the privacy implications of granting broad permissions to third parties within widely used tools like Chrome.

      Sources:

      https://thehackernews.com/2026/01/two-chrome-extensions-caught-stealing.html
      https://www.techrepublic.com/article/news-900k-users-chrome-extensions-steal-chatgpt-deepseek-chats/
      https://cyberpress.org/malicious-chrome-extension-exposed-for-stealing-chatgpt-and-deepseek-chats-from-900000-users/

      Key Takeaways

      • Two malicious Chrome extensions with nearly a million installs were exfiltrating AI chatbot conversations and browsing activity to attacker servers, undermining user trust in browser add-ons.
      • The extensions mimicked legitimate AI tools and used misleading consent prompts, demonstrating how easily sophisticated actors can bypass platform safeguards.
      • This incident underscores persistent vulnerabilities in browser extension ecosystems and the need for users to critically assess permissions and remove untrusted software.

      In-Depth

      A significant security incident has thrust the risks associated with seemingly innocuous browser extensions into the spotlight. Late in 2025 and into early 2026, researchers at OX Security uncovered a coordinated threat campaign in which two Chrome extensions — “Chat GPT for Chrome with GPT-5, Claude Sonnet & DeepSeek AI” and “AI Sidebar with Deepseek, ChatGPT, Claude, and more” — were quietly siphoning user data that should have remained private. Posing as productivity enhancements, these extensions were downloaded nearly 900,000 times before analysts determined they were collecting entire streams of AI chatbot conversations and general browsing data and sending them to remote servers under the control of malicious actors.

      The seriousness of this breach lies not only in its scope but in its method. The malware leveraged the chrome.tabs API to monitor real-time browser activity and was able to scrape text from active sessions with services like ChatGPT and DeepSeek. To avoid triggering suspicion, it requested permissions under the benign guise of improving analytics or user experience, a deception that proved effective in gaining user trust. Compounding the problem, one of the rogue extensions briefly carried a “Featured” designation in the Chrome Web Store, falsely implying compliance with Google’s security standards.

      This incident is an important reminder that platform vetting is not infallible and that users must be judicious in granting permissions to third-party software. Regular audits of installed extensions, prompt removal of unfamiliar add-ons, and a critical eye toward permission requests are simple yet effective steps for mitigating similar threats going forward.

      Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
      Previous ArticleMicrosoft Warns of a Surge in Phishing Attacks Exploiting Misconfigured Email Systems
      Next Article EU Widens Tech Crackdown, Targeting Musk’s Grok and TikTok Over Alleged AI Law Violations

      Related Posts

      NASA Astronauts Use iPhones to Capture Historic Artemis II Mission Images

      April 8, 2026

      Anthropic Code Leak Raises Questions About AI Security and Industry Oversight

      April 8, 2026

      The Rise Of Agentic AI Signals A Shift From Tools To Autonomous Digital Actors

      April 8, 2026

      AI Chatbots Draw Scrutiny As Teens Engage In Intimate Roleplay And Emotional Dependency

      April 8, 2026
      Add A Comment
      Leave A Reply Cancel Reply

      Editors Picks

      NASA Astronauts Use iPhones to Capture Historic Artemis II Mission Images

      April 8, 2026

      OpenAI Expands Influence With Strategic TBPN Media Acquisition

      April 8, 2026

      Cybersecurity Veteran Turns Focus To Drone Hacking After Decades Battling Malware

      April 6, 2026

      Anonymous Social App Surges In Saudi Arabia, Testing Limits Of Digital Freedom

      April 6, 2026
      Popular Topics
      trending Sam Altman Quantum computing Viral Software Startup Series A Sundar Pichai Tim Cook Ransomware Series B Taiwan Tech Samsung Satya Nadella UAE Tech spotlight Tesla Robotics Tesla Cybertruck SpaceX
      Major Tech Companies
      • Apple News
      • Google News
      • Meta News
      • Microsoft News
      • Amazon News
      • Samsung News
      • Nvidia News
      • OpenAI News
      • Tesla News
      • AMD News
      • Anthropic News
      • Elbit News
      AI & Emerging Tech
      • AI Regulation News
      • AI Safety News
      • AI Adoption
      • Quantum Computing News
      • Robotics News
      Key People
      • Sam Altman News
      • Jensen Huang News
      • Elon Musk News
      • Mark Zuckerberg News
      • Sundar Pichai News
      • Tim Cook News
      • Satya Nadella News
      • Mustafa Suleyman News
      Global Tech & Policy
      • Israel Tech News
      • India Tech News
      • Taiwan Tech News
      • UAE Tech News
      Startups & Emerging Tech
      • Series A News
      • Series B News
      • Startup News
      Tallwire
      Facebook X (Twitter) LinkedIn Threads Instagram RSS
      • Tech
      • Entertainment
      • Business
      • Government
      • Academia
      • Transportation
      • Legal
      • Press Kit
      © 2026 Tallwire. Optimized by ARMOUR Digital Marketing Agency.

      Type above and press Enter to search. Press Esc to cancel.