Microsoft takes down over 100 malicious Edge extensions hiding malware in images and fonts

https://cdn.mos.cms.futurecdn.net/exZsfKfKExQC2DhBKP5jbK-1920-80.jpg
  • 119 malicious Edge extensions flew under the radar
  • They installed harmful code days after extension installation
  • It's proof that static code review is no longer sufficient

Microsoftsays it has taken down 119 malicious extensions from the Edge Add-ons store after "proactive threat hunting" revealed a campaign that's been dubbed StegoAd.

As part of the program, the company also had to suspend more than 90 developer accounts associated with the dodgy activity.

Believed to have been active since at least 2021, it's believed that the malicious browser extensions had been downloaded a total of 2.6 million times.

Microsoft removes 119 'StegoAd' malicious extensions

The campaign was so broad that the extensions didn't just occupy one category: ad blockers, VPNs, video downloaders, translators and utility tools like PDF exporters were all ploys for the malicious extensions.

This particular campaign got its name from the type of tactic used – steganography is...

Copyright of this story solely belongs to techradar.com. To see the full text click HERE

Read more

https://storage.googleapis.com/gweb-uniblog-publish-prod/images/gemini-omni__keyword_v6.width-1300.png

Google launches Nano Banana 2 Lite, a low cost text-to-image model that delivers outputs in four seconds, and rolls out Gemini Omni Flash to developers

Sponsor Posts Fast, affordable law for startups β€” Soxton automates startup legal so founders can move faster and sleep better. We handle incorporation, advisor, employment and commercial contracts. Join the waitlist for early access! Stop vibe coding analytics β€” Equals AI turns questions about your business into auditable spreadsheet models and dashboards.