[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fLPYEwC2Ar71ZjRhMKm8HO7qHk2xbJNL1jYyewaE3Nuk":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":17,"created_at":18,"published_at":19,"article":20,"tags":24,"podcasts":37},"f8ee62b9-d0c2-467c-af36-b6c1bedf443b","malicious-chrome-extensions-highlight-browser-supply-chain-risks","7638a80c-90f2-4a35-aa71-fb8cd60c628f","Malicious Chrome Extensions Highlight Browser Supply Chain Risks","Over 150 malicious Chrome extensions disguised as wallpaper apps successfully infiltrated the official Chrome Web Store, collectively reaching 105,000+ users before detection. These extensions operated a sophisticated deception campaign, using fake privacy policies while actually harvesting user data and generating fraudulent traffic to monetize their malicious activities. The incident demonstrates how threat actors exploit users' trust in official app stores and their tendency to install extensions without proper vetting, turning legitimate distribution channels into attack vectors.","**Immediate actions:**\n- Audit all installed browser extensions and remove unnecessary or suspicious ones\n- Enable browser security features that warn about potentially harmful extensions\n- Review extension permissions before installation and reject those requesting excessive access\n\n**Long-term improvements:**\n- Implement organization-wide policies restricting browser extension installations to pre-approved lists\n- Establish regular security training focused on safe browsing practices and extension risks\n- Deploy endpoint detection tools that monitor browser extension installations and activities\n\n**Monitoring measures:**\n- Set up network monitoring to detect unusual traffic patterns that may indicate compromised browsers\n- Implement user activity logging to identify potential data exfiltration through browser extensions",[12,13,14,15,16],"CIS Control 2.7","CIS Control 4.1","NIST SC-18","NIST AT-2","GDPR Article 32","published","2026-06-15T12:20:44.596984+00:00","2026-06-15T12:20:44.505+00:00",{"id":7,"url":21,"slug":22,"title":23},"https:\u002F\u002Fthehackernews.com\u002F2026\u002F06\u002F152-chrome-wallpaper-extensions-with.html","152-chrome-wallpaper-extensions-with-105k-installs-linked-to-adware-and-fake-tra-df7edb","152 Chrome Wallpaper Extensions with 105K Installs Linked to Adware and Fake Traffic",[25,31],{"id":26,"name":27,"slug":28,"description":29,"color":30},"7261eb8f-acd4-4d93-a489-7fdd652ec0ea","Security Awareness","security-awareness","Phishing, social engineering, human error","#22c55e",{"id":32,"name":33,"slug":34,"description":35,"color":36},"f0c2a0af-58aa-4128-87c9-6acd30f2dc48","Supply Chain","supply-chain","Third-party risk, compromised dependencies","#8b5cf6",[38],{"id":39,"date":40,"edition":41,"title":42,"audio_url":43},"1158ce0b-7f9e-424f-8d50-f89836c16abd","2026-06-15","afternoon","ThreatNoir Afternoon Brief — June 15","https:\u002F\u002Fcdn.threatnoir.com\u002Fpodcasts\u002F2026-06-15\u002Fthreatnoir-afternoon-brief-2026-06-15.mp3"]