{"id":673631,"date":"2026-01-27T14:36:03","date_gmt":"2026-01-27T14:36:03","guid":{"rendered":"https:\/\/microscopemedia.com\/?p=673631"},"modified":"2026-01-27T14:36:03","modified_gmt":"2026-01-27T14:36:03","slug":"extensii-chrome-malitioase-descoperite-in-chrome-web-store-peste-100-000-de-utilizatori-afectati","status":"publish","type":"post","link":"https:\/\/microscopemedia.com\/?p=673631","title":{"rendered":"Extensii Chrome mali\u021bioase descoperite \u00een Chrome Web Store. Peste 100.000 de utilizatori afecta\u021bi"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/microscopemedia.com\/wp-content\/uploads\/2026\/01\/extensii-chrome-malitioase-descoperite-in-chrome-web-store-peste-100-000-de-utilizatori-afectati.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p data-start=\"553\" data-end=\"962\" id=\"p-0\">Cercet\u0103tori \u00een securitate cibernetic\u0103 de la Symantec au identificat mai multe extensii Chrome mali\u021bioase care au reu\u0219it s\u0103 ocoleasc\u0103 procesele de verificare ale Google \u0219i s\u0103 ajung\u0103 la peste 100.000 de utilizatori activi, scrie <a href=\"https:\/\/www.neowin.net\/news\/remove-these-malicious-chrome-extensions-now-to-protect-your-data\/\" target=\"_blank\" rel=\"noopener\">Neowin<\/a>.<\/p>\n<p data-start=\"964\" data-end=\"1307\" id=\"p-1\">Potrivit raportului, extensiile foloseau tehnici avansate \u0219i periculoase, precum acces neautorizat la clipboard, exfiltrarea datelor sensibile \u0219i infrastructuri de tip command-and-control. De\u0219i erau disponibile \u00een magazinul oficial, aceste extensii reprezentau un risc real pentru confiden\u021bialitatea \u0219i securitatea financiar\u0103 a utilizatorilor.<\/p>\n<p data-start=\"1389\" data-end=\"1844\" id=\"p-2\">Una dintre extensiile Chrome mali\u021bioase identificate este Good Tab, care este \u00eenc\u0103 disponibil\u0103 \u00een Chrome Web Store la momentul redact\u0103rii acestui articol. Aceasta utilizeaz\u0103 un iframe HTTP nesecurizat pentru a permite unui domeniu extern s\u0103 citeasc\u0103 \u0219i s\u0103 modifice clipboard-ul utilizatorului f\u0103r\u0103 consim\u021b\u0103m\u00e2nt explicit. Vulnerabilitatea poate fi exploatat\u0103 pentru furt de parole sau \u00eenlocuirea adreselor de portofele crypto \u00een timpul tranzac\u021biilor.<\/p>\n<p data-start=\"1846\" data-end=\"2174\" id=\"p-3\">O alt\u0103 extensie, Children Protection, retras\u0103 \u00eentre timp, func\u021biona ca un veritabil sistem de comand\u0103 \u0219i control, folosind un algoritm de generare a domeniilor pentru a evita blocarea serverelor. Aceasta putea colecta cookie-uri de browser pentru deturnarea sesiunilor \u0219i executa cod JavaScript arbitrar trimis de la distan\u021b\u0103.<\/p>\n<h2 data-start=\"2176\" data-end=\"2243\" id=\"chapter-0\">Alte extensii Chrome mali\u021bioase \u0219i riscurile pentru utilizatori<\/h2>\n<p data-start=\"2245\" data-end=\"2688\" id=\"p-4\">Printre extensiile Chrome mali\u021bioase raportate se num\u0103r\u0103 \u0219i DPS Websafe, care impersona brandul Adblock Plus pentru a c\u00e2\u0219tiga \u00eencrederea utilizatorilor, \u00een timp ce redirec\u021biona c\u0103ut\u0103rile \u0219i monitoriza activitatea online. De asemenea, extensia Stock Informer, \u00eenc\u0103 disponibil\u0103, con\u021bine o vulnerabilitate critic\u0103 de tip cross-site scripting ce permite atacatorilor s\u0103 execute cod de la distan\u021b\u0103 din cauza lipsei verific\u0103rilor de origine.<\/p>\n<p data-start=\"2690\" data-end=\"2862\" id=\"p-5\">Cercet\u0103torii recomand\u0103 eliminarea imediat\u0103 a acestor extensii \u0219i atrag aten\u021bia c\u0103 prezen\u021ba lor \u00een magazinul oficial demonstreaz\u0103 limitele proceselor automate de verificare.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cercet\u0103tori \u00een securitate cibernetic\u0103 de la Symantec au identificat mai multe extensii Chrome mali\u021bioase care au reu\u0219it s\u0103 ocoleasc\u0103 procesele de verificare ale Google \u0219i s\u0103 ajung\u0103 la peste 100.000 &hellip; <a href=\"https:\/\/microscopemedia.com\/?p=673631\" class=\"more-link\">Read More<\/a><\/p>\n","protected":false},"author":1,"featured_media":673632,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"Default","format":"standard","meta":[],"categories":[1],"tags":[],"_links":{"self":[{"href":"https:\/\/microscopemedia.com\/index.php?rest_route=\/wp\/v2\/posts\/673631"}],"collection":[{"href":"https:\/\/microscopemedia.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/microscopemedia.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/microscopemedia.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/microscopemedia.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=673631"}],"version-history":[{"count":0,"href":"https:\/\/microscopemedia.com\/index.php?rest_route=\/wp\/v2\/posts\/673631\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/microscopemedia.com\/index.php?rest_route=\/wp\/v2\/media\/673632"}],"wp:attachment":[{"href":"https:\/\/microscopemedia.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=673631"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/microscopemedia.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=673631"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/microscopemedia.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=673631"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}