Security researchers have uncovered a malicious campaign that used Chrome's extension system to steal cryptocurrency from tens of thousands of users. Researchers at Socket Inc. identified 19 malicious extensions aimed at Chrome and Edge users, with one widely used extension affecting about 80,000 people.
Many of the extensions appeared to work normally for months before attackers added malicious code. The extensions have since been removed from both browser stores, but users may still be affected if they have not manually removed the add-ons. Researchers believe a single actor is behind the campaign and is determined to continue.


