{"id":33555,"date":"2025-07-30T05:23:08","date_gmt":"2025-07-30T05:23:08","guid":{"rendered":"https:\/\/www.newsbeep.com\/ca\/33555\/"},"modified":"2025-07-30T05:23:08","modified_gmt":"2025-07-30T05:23:08","slug":"google-chrome-warning-millions-of-users-have-data-stolen","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/ca\/33555\/","title":{"rendered":"Google Chrome Warning\u2014\u2018Millions Of Users Have Data Stolen\u2019"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/www.newsbeep.com\/ca\/wp-content\/uploads\/2025\/07\/1753852988_936_960x0.jpg\" alt=\"Google Chrome app\" data-height=\"3507\" data-width=\"5272\" style=\"position:absolute;top:0\"\/><\/p>\n<p class=\"color-body light-text\" role=\"button\">Be careful what you install.<\/p>\n<p>dpa\/picture alliance via Getty Images<\/p>\n<p>Google has issued an urgent warning for 2 billion Chrome users. A high-severity memory vulnerability could enable attackers to target users through the websites they visit. This has been fixed and all users should <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/02\/google-chrome-warning-update-or-stop-using-browser-by-july-23\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/02\/google-chrome-warning-update-or-stop-using-browser-by-july-23\/\" target=\"_self\" aria-label=\"update and restart\" rel=\"nofollow noopener\">update and restart<\/a> now.<\/p>\n<p><a class=\"color-link\" href=\"https:\/\/chromereleases.googleblog.com\/search\/label\/Desktop%20Update\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/chromereleases.googleblog.com\/search\/label\/Desktop%20Update\" aria-label=\"CVE-2025-8292\">CVE-2025-8292<\/a> is a critical fix, but there\u2019s a much more dangerous threat to Chrome users that is hidden from sight. And so while all desktop users must ensure they move to version 138.0.7204.183\/.184 of the browser, that\u2019s not enough to stay safe.<\/p>\n<p>This threat that should worry you more comes from extensions that might appear to be officially verified, but which have been designed or hijacked to attack your device.<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-0\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/27\/why-you-should-delete-all-your-passwords-in-google-chrome\/\" target=\"_blank\" aria-label=\"Why You Should Delete All Passwords Saved In Google Chrome\" rel=\"noopener noreferrer nofollow\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/27\/why-you-should-delete-all-your-passwords-in-google-chrome\/\">ForbesWhy You Should Delete All Passwords Saved In Google ChromeBy Zak Doffman<\/a><\/p>\n<p>\u201cMillions of users have their data stolen,\u201d SquareX\u2019s Vivek Ramachandran told me, as the extension-focused security team released its <a class=\"color-link\" href=\"https:\/\/labs.sqrx.com\/architectural-limitations-devtools-extensions-890e07e07e7f\" target=\"_blank\" rel=\"nofollow noopener noreferrer\" data-ga-track=\"ExternalLink:https:\/\/labs.sqrx.com\/architectural-limitations-devtools-extensions-890e07e07e7f\" aria-label=\"latest threat report\">latest threat report<\/a>. The alarming reality, he says, is that security tools do not have \u201cvisibility into the dynamic behavior of extensions at run time to protect users against the rising threat vector\u201d<\/p>\n<p>The past few years, SquareX says, \u201chave witnessed a surge in malicious browser extensions, including the Geco Colorpick, Cyberhaven and the Great Suspender. These malicious extensions exfiltrate data, steal session cookies, spread spyware and even hijack browser sessions of victims.\u201d<\/p>\n<p>This includes extensions that were dangerous from the get-go, but also \u201cbenign extensions that turned malicious \u2014 either due to a compromise or change in ownership \u2014 exploiting trusted extensions with a wide existing installed base.\u201d<\/p>\n<p>\u201cMost enterprises still rely on extension store labels like \u2018Verified\u2019 and \u2018Chrome Featured\u2019 to determine its security,\u201d Ramachandran says. \u201cThis research showed that this is approach is extremely flawed as it turns out browser vendors and enterprises do not have sufficient tools to conduct extension analysis.\u201d<\/p>\n<p>This latest extension warning from SquareX echoes prior reports that focus on the hidden threats from extensions now installed by most users without any of the checks and balances applied to the browser itself. In a world of increasing AI threats, including the use of <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/03\/change-your-browser-settings-now-massive-security-risk\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/03\/change-your-browser-settings-now-massive-security-risk\/\" target=\"_self\" aria-label=\"marauding browser AI agents,\" rel=\"nofollow noopener\">marauding browser AI agents,<\/a> this is a huge risk.<\/p>\n<p>\u201cThe majority of extensions today are downloaded and installed from official stores like Chrome Store,\u201d SquareX says. But store badges \u201ccan be easily gamified by attackers with fake reviews and mass downloads. As a result, numerous Verified and Chrome Featured Extensions have been discovered as malicious, <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/09\/delete-every-chrome-and-edge-extension-thats-on-this-list\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/09\/delete-every-chrome-and-edge-extension-thats-on-this-list\/\" target=\"_self\" aria-label=\"including the latest disclosure\" rel=\"nofollow noopener\">including the latest disclosure<\/a>.\u201d<\/p>\n<p><a class=\"embed-base color-body color-body-border link-embed embed-1\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/29\/fbi-warns-all-smartphone-users-never-send-these-texts\/\" target=\"_blank\" aria-label=\"FBI Warns iPhone And Android Users\u2014Do Not Share These Texts\" rel=\"noopener noreferrer nofollow\" data-ga-track=\"forbesEmbedly:https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/29\/fbi-warns-all-smartphone-users-never-send-these-texts\/\">ForbesFBI Warns iPhone And Android Users\u2014Do Not Share These TextsBy Zak Doffman<\/a><\/p>\n<p>Extensions are often given free rein on devices and can operate with a user\u2019s credentials, which is a gift to attacks. \u201cIt is important to first understand the \u2018superpowers\u2019 unique to browser extensions,\u201d Square X warns, including:<\/p>\n<p> Access HTTP-only cookies<br \/>\n Bypass cross-origin request restrictions<br \/>\n Observe tab updates<br \/>\n Inject and run scripts on behalf of pages<br \/>\n Read and\/or modify any web page<br \/>\n Read web page local and session storages<br \/>\n Hijack functions and\/or web APIs on a web page<br \/>\n Inspect web requests<br \/>\n Force notification and popup permissions for websites<br \/>\n Take screenshots and record active tabs<\/p>\n<p>All told, while updating and restarting Chrome is critical, it could very well be that the real threat to your browser and the <a class=\"color-link\" href=\"https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/27\/why-you-should-delete-all-your-passwords-in-google-chrome\/\" data-ga-track=\"InternalLink:https:\/\/www.forbes.com\/sites\/zakdoffman\/2025\/07\/27\/why-you-should-delete-all-your-passwords-in-google-chrome\/\" target=\"_self\" aria-label=\"data it accesses\" rel=\"nofollow noopener\">data it accesses<\/a> is hidden from view and constantly working against you. You really do need to be careful what you install.<\/p>\n","protected":false},"excerpt":{"rendered":"Be careful what you install. dpa\/picture alliance via Getty Images Google has issued an urgent warning for 2&hellip;\n","protected":false},"author":2,"featured_media":33556,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[49,48,25405,25407,25409,25410,17438,25408,25406,17434,61],"class_list":["post-33555","post","type-post","status-publish","format-standard","has-post-thumbnail","category-technology","tag-ca","tag-canada","tag-chrome-attack","tag-chrome-emergency-update","tag-chrome-vs-openai","tag-chrome-vs-perplexity","tag-chrome-warning","tag-chrome-zero-day","tag-google-attack","tag-google-update","tag-technology"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/33555","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/comments?post=33555"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/33555\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media\/33556"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media?parent=33555"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/categories?post=33555"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/tags?post=33555"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}