[Openid-specs-fapi] FYI: Chrome extensions with 1.4 million installs steal browsing data

Anders Rundgren anders.rundgren.net at gmail.com
Thu Sep 1 01:52:16 UTC 2022


Browser extensions (by default) inject code in every page.  It hard to see
how such a system can be secure and at the same offering added
functionality.

On Thu, Sep 1, 2022, 02:33 Nat Sakimura via Openid-specs-fapi <
openid-specs-fapi at lists.openid.net> wrote:

> Interesting attack.
>
>
> https://www.bleepingcomputer.com/news/security/chrome-extensions-with-14-million-installs-steal-browsing-data/
> _______________________________________________
> Openid-specs-fapi mailing list
> Openid-specs-fapi at lists.openid.net
> https://lists.openid.net/mailman/listinfo/openid-specs-fapi
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.openid.net/pipermail/openid-specs-fapi/attachments/20220901/e9003f83/attachment.html>


More information about the Openid-specs-fapi mailing list