These malicious Chrome extensions have more than 1 million users — delete them now

and image of the Google Chrome logo on a laptop
(Image credit: Shutterstock)

The best Google Chrome extensions can add useful functionality to the popular web browser, but they can also be used to spread malware and threaten your cybersecurity. And a recent report from security firm McAfee has identified four extensions that promise to boost your browser but in return are actually stealing your data. 

The malicious browser extensions identified by McAfee are Netflix Party (and its successor Netflix Party 2), Full Page Screenshot Capture — Screenshotting and AutoBuy Flash Sale. Combined, they have over 1 million downloads, with the first Netflix Party having more than 800,000 installs alone.

These extensions do provide the core functionality promised, but according to McAfee they also inject unwanted code into your browser. If you have any of the four installed, the extension will check to see if it can inject an affiliate revenue code every time you navigate to a new web page, allowing the creators of the extension to profit off your online purchasing, without your consent. McAfee has released a video further detailing how this process works, which you can watch below. 

To Google’s credit, it takes a hardline stance against these malicious add-ons and has already removed both Netflix Party extensions from its Chrome Web Store. However, the others are still live and available to download. Furthermore, even if an extension is removed from the Chrome store, users who have previously downloaded the extension still need to take action. You’ll need to manually remove the extensions from your browser to fully protect yourself and ensure your online security isn’t being breached. 

Earlier this month, cybersecurity experts Kaspersky estimated that more than 1.3 million users have been affected by malicious browser extensions in just the first half of 2022 alone. In fact, from January 2020 to June 2022, Kaspersky discovered that more than 4.3 million users had adware hiding in their browser extensions. And while Google is constantly removing offending extensions, new ones continue to pop up at an alarming rate.

How to protect yourself from malicious browser extensions  

In order to protect yourself and your data from browser extension threats, Kaspersky first recommends that you only use trusted sources to download software. Malware and other unwanted applications are often distributed through third-party resources, as they don’t have the same security checks in place that official web stores do.

Even when downloading a browser extension from a trusted source, you should still carefully consider any access requests before agreeing to them. As the five examples above prove, even reputable webstores can play host to extensions with sinister intentions.   

At the same time, it’s also worth limiting the number of extensions you use and periodically reviewing which extensions you have installed in your browser. McAfee has previously identified extensions that initially appear fine, but after a set period of time begin harvesting your data. So, make sure you’re constantly checking what permissions extensions are seeking. 

Finally, you should have one of the best antivirus software solutions installed on all of your devices, as they can flag malicious extensions and warn you that they should be removed before your data falls into the wrong hands. 

Read next: Still using an iPhone 6? Upgrade now to fix this hacking risk.

TOPICS
Rory Mellon
Entertainment Editor (UK)

Rory is an Entertainment Editor at Tom’s Guide based in the UK. He covers a wide range of topics but with a particular focus on gaming and streaming. When he’s not reviewing the latest games, searching for hidden gems on Netflix, or writing hot takes on new gaming hardware, TV shows and movies, he can be found attending music festivals and getting far too emotionally invested in his favorite football team. 

Read more
and image of the Google Chrome logo on a laptop
Popular Chrome extensions hijacked by hackers in widespread cyberattack — 3.2 million at risk
and image of the Google Chrome logo on a laptop
Over 600,000 Chrome users at risk after 16 browser extensions compromised by hackers — what you need to know
and image of the Google Chrome logo on a laptop
Google Chrome at risk from shape-shifting browser extensions — how to stay safe
A laptop displaying the Chrome logo
Don't click this — malicious ads impersonating Google Chrome spreading dangerous malware
and image of the Google Chrome logo on a laptop
Billions of Chrome users at risk from new browser-hijacking Syncjacking attack — how to stay safe
A hacker typing quickly on a keyboard
Hackers are posing as Apple and Google to infect Macs with malware — don’t fall for these fake browser updates
Latest in Browsers
iPhone 16 Pro Max shown in hand
Your iPhone has a custom voice command feature — here's how to use it
iPhone 16 Pro Max shown in hand
You can change your iPhone's default browser — here's how
Google Chrome on Android
How to stop your personal data from appearing in Google searches
Opera Air
I just tested the world’s first mindful browser — it’s calmly convinced me to ditch Google Chrome
A photo of the Google Chrome logo on a white background, displayed on the screen of a large MacBook Pro which is situated on a table with green foliage behind.
Google Chrome just got three new modes — and it's a game changer for performance
Google Calendar app on iPhone
Google Calendar just got the dark mode we’ve been waiting for — here’s how to activate it
Latest in News
23andME box
23andMe has declared bankruptcy — here's how to keep your DNA from being sold
half-life alyx
Latest Half-Life 3 rumors point to a 2025 release — and maybe pigs will fly
NFL Sunday Ticket logo for YouTube
NFL Sunday Ticket 2025 pricing revealed — and it's bad news
Ben Mendelsohn in Andor season 2
'Welcome to the Rebellion' — new ‘Andor’ season 2 trailer teases a darker edge
Russian flag with padlock smashing through glass
47 VPNs could be axed from Google Play Store following Russian demands
ChatGPT on iPhone
ChatGPT was down — updates on quick outage