Malware News Chrome's Web Store has a theme spam problem

LASER_oneXM

Level 37
Thread author
Verified
Top Poster
Well-known
Forum Veteran
Feb 4, 2016
2,516
15,624
3,578
53
Germany / Poland
Spammers use the themes section of the Chrome Web Store, the official store for Chrome extensions and themes, to push dodgy streaming subscriptions.

The Chrome Web Store returns extension and theme matches when you search for something. If you search for a recent movie title on the web store, you get matching extensions and themes returned.

While you'd expect themes to just return themes based on movie scenes, characters or posters to you, you probably don't expect these themes to push subscriptions for dodgy streaming services on the Internet.

That's what is happening right now, however, in the Chrome Web Store, and it is not the first time that Google's official Chrome Web Store has been abused. Google had to pull ad-injecting, crypto-mining, copycat, and other abusive extensions from the Store in the past.

...
....
..
Some of the "watch a movie" themes have thousands of users and have been in the Store for months. It appears that Google's automatic controls don't work properly in this regard and that the reporting functionality that the company built into the Store does not help either.

The title of the themes suggests to Chrome users that they may watch the movie for free and often in high definition. The description of the add-on is filled with keywords but no links, and it seems more of a copy and paste job than anything else.
....
.......
 
Only saw 3 themes, unless more have been removed..?
gHacks said:
As soon as users do that, they are taken to another web page that promises free registration and direct access to thousands of movies after registration.
The ones that I checked out asked for payment information and while they promise that users are not charged for signing up, reports on the Internet suggest that this is not always the case.

Example:
1527615896388.png