Bonum Certa Men Certa

Malware-Addled Chrome Web Store to “Warn About Malware”



Reprinted with permission from Ryan Farmer. Also available in Gemini.

Malware-Addled Chrome Web Store to “Warn About Malware”.



Chrome’s extension store crawls with malware.



If you install any significant number of extensions from the store, then you will eventually have malware.



One of the more common ways to get malware from Chrome’s extension store is when a “good extension goes bad”. Extensions with many users are worth a lot of money to hijackers. Quite often they’ll pay the developer off, push out an update to the users, quietly, with the malicious payload, and then sit pretty on a fat stack of dirty money before Google gives them the boot.



Since it’s not difficult to push malicious extensions, hijack existing ones, and make new developer accounts (for five whole dollars), the malware problem with Chrome extensions probably won’t subside any time soon.



But Google claims that they’re going to run “malware scans” or something, which have never cleaned up Windows, so good luck with that I guess. This “we’ll just keep an eye on it for you with a scanner while you do loads of stupid things” “Windows-style” “security” has literally never worked, at least not reliably.



I don’t typically install extensions, and when I do they’re usually more established and open source, into my Gecko browsers (SeaMonkey, LibreWolf, Firefox ESR), and when it’s open source you can have eyes on the extension.



Google’s Chrome extension store STILL won’t even tell you which license you are agreeing to, so you are giving the author a blank check each time you install one.



Meanwhile, Google is putting much effort into crippling the extensions platform so that ad blockers and NoScript don’t work well or can’t even be made to work at all, or their own ads get a pass.



Chrome is a malicious program.



It’s basically a Trojan horse (something that appears desirable, but in fact comes packed with things you wouldn’t accept if you knew it was being done).



It’s a disaster for your privacy and security. If you’re smart, you’ll never put it on your computer.

Recent Techrights' Posts

Fourth Estate or Missing Fourth Pillar
"The term Fourth Estate or fourth power refers to the press and news media in explicit capacity of reporting the News" -Wikipedia on Fourth Estate
LLMs Are Not a Form of Intelligence (They Never Will Be)
Butterflies are smarter than "chatGPT"
Business Software Alliance (BSA), Microsoft, and AstroTurfing Online (Also in the Trump Administration Groomed by BSA and Microsoft)
Has Washington become openWashington? Where the emphasis is openwashing rather than Open(Source)Washington?
Windows at 1%
Quit throwing taxpayers' money at Microsoft, especially when it fails to fulfil basic needs and instead facilitates espionage by foreign and very hostile nations
 
Technology: rights or responsibilities? - Part VII
By Dr. Andy Farnell
BetaNews is Still 'Shitposting' About Trump and Porn (Two Analysers Say This 'Shitposting' Comes From LLMs)
Probably some SEO garbage, prompted with words like "porn" and "trump" to stitch together other people's words
Market Share of Vista 11 Said to be Going Down in Europe
one plausible explanation is that gs.statcounter.com is actually misreporting the share of Vista 11, claiming that it's higher than it really is
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Sunday, November 17, 2024
IRC logs for Sunday, November 17, 2024
Links 17/11/2024: Pakistan Broke, Tyson 'Crashes' or Knocks Over Netflix
Links for the day
Gemini Links 17/11/2024: Nachtigall Planned, Exodus at Twitter
Links for the day
Links 17/11/2024: China's Diplomacy and Gazprom Setback
Links for the day
Sudan Has Reached a State of Android Domination (93% Market Share, All-Time High According to statCounter)
countries at war buy fewer laptops?
[Meme] Just Do It?
'FSF' Europe (Microsoft) and FSF
Microsoft Front Groups Against the FSF, Home of GPL, GNU, and Free Software
Much of the money (not all of it) comes from the criminals at Redmond
Centralisation is Dooming the Web, RSS is One Workaround (But Not "Planets")
At least Gemini Protocol rejects centralisation
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Saturday, November 16, 2024
IRC logs for Saturday, November 16, 2024
Links 17/11/2024: Wars, Bailouts, and Censorship
Links for the day
Gemini Links 17/11/2024: Changing Interests and HamsterCMS
Links for the day
Links 16/11/2024: Twitter (X) Exodus Continues, Social Control Media Sanctions Spread Further
Links for the day
If You Donate to the FSFE, You Are Funding a Microsoft Front Group Inside Europe
FSFE has a new "Sugar Daddy"
Wikileaks is Now Stuck Under the Clutches of Donald Trump (via Elon Musk)
The same Trump administration that was blackmailing Assange and also schemed to torture/assassinate him
IPKat's Annsley Merelle Ward Spreading the Same Old Lies and Shameless Propaganda to Promote Software Patents in Europe (i.e. the Usual... and She's Not Even a Coder)
People are quick to point out that the cited survey is very inherently biased
Windows in Azerbaijan: Down From Around 99% to Around 20%
In the past two years Microsoft could barely keep above 20%
Microsoft's Vanity Vapourware ('Lame Duck' Product for Trump and Biden Bailouts) Again "Discontinued"
Microsoft cannot keep a dying unit that makes almost no sales alive just for mere prospects of a bailout (which falls through because even the military turns it down)
Links 16/11/2024: FTC Investigates Abusive Monopolist Microsoft for "Clown Computing" Market Abuses, General Motors Mass Layoffs
Links for the day
When Articles About Linux Foundation Are LLM SPAM (Slop) From Publishers Paid by the Linux Foundation
This is a corruption of the Web
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Friday, November 15, 2024
IRC logs for Friday, November 15, 2024
Claim That IBM Canada Had Mass Layoffs Just Hours Ago
Nothing in the media, as usual
Gemini Links 16/11/2024: Starting Afresh, Community-to-community Networks
Links for the day