<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>malicious browser extension Archives - Quayside Technical Services</title>
	<atom:link href="https://www.qts-ltd.com/tag/malicious-browser-extension/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.qts-ltd.com/tag/malicious-browser-extension/</link>
	<description>Delivering effective IT &#38; telecoms services &#38; support across Devon &#38; The South West.</description>
	<lastBuildDate>Mon, 14 Oct 2024 19:56:35 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.0.12</generator>

<image>
	<url>https://www.qts-ltd.com/wp-content/uploads/2019/07/cropped-quayside-favicon-32x32.png</url>
	<title>malicious browser extension Archives - Quayside Technical Services</title>
	<link>https://www.qts-ltd.com/tag/malicious-browser-extension/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Beware ChromeLoader Exploit Malware Website Campaign   </title>
		<link>https://www.qts-ltd.com/beware-chromeloader-exploit-malware-website-campaign/</link>
					<comments>https://www.qts-ltd.com/beware-chromeloader-exploit-malware-website-campaign/#respond</comments>
		
		<dc:creator><![CDATA[staff]]></dc:creator>
		<pubDate>Tue, 08 Oct 2024 09:50:43 +0000</pubDate>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Stop-Press]]></category>
		<category><![CDATA[ChromeLoader exploit]]></category>
		<category><![CDATA[cyber criminals]]></category>
		<category><![CDATA[generative AI]]></category>
		<category><![CDATA[HP Wolf Security]]></category>
		<category><![CDATA[infected sites]]></category>
		<category><![CDATA[malicious advertising]]></category>
		<category><![CDATA[malicious browser extension]]></category>
		<category><![CDATA[malvertising]]></category>
		<category><![CDATA[malware]]></category>
		<guid isPermaLink="false">https://www.qts-ltd.com/?p=128725</guid>

					<description><![CDATA[<p>An HP Wolf Security report has highlighted how hackers are leveraging a ChromeLoader exploit and using code signing certificates and malvertising techniques to distribute malware via fake companies and websites.  ChromeLoader is a malicious browser extension, and as part of what appears to be a large scale cyberattack, cybercriminals are reportedly exploiting the ChromeLoader vulnerability [&#8230;]</p>
<p>The post <a rel="nofollow" href="https://www.qts-ltd.com/beware-chromeloader-exploit-malware-website-campaign/">Beware ChromeLoader Exploit Malware Website Campaign   </a> appeared first on <a rel="nofollow" href="https://www.qts-ltd.com">Quayside Technical Services</a>.</p>
]]></description>
										<content:encoded><![CDATA[<div>
<p><span data-olk-copy-source="MessageBody">An HP Wolf Security report has highlighted how hackers are leveraging a ChromeLoader exploit and using code signing certificates and malvertising techniques to distribute malware via fake companies and websites. </span></p>
</div>
<div>
<p>ChromeLoader is a malicious browser extension, and as part of what appears to be a large scale cyberattack, cybercriminals are reportedly exploiting the ChromeLoader vulnerability by using valid code signing certificates: digital certificates to verify software authenticity and integrity, allowing them to bypass Windows security measures like AppLocker without triggering user warnings.</p>
</div>
<div>
<p>The report highlights how the attackers set up fake companies to obtain these valid certificates or steal them from legitimate sources. These fake companies then host websites that offer seemingly legitimate tools, such as PDF readers or converters, to lure in victims.</p>
</div>
<div>
<p>The campaign uses malvertising or malicious advertising to direct potential victims to the well designed but malware ridden websites which often appear in search results for popular keywords like &#8220;PDF converters&#8221; and &#8220;manual readers.&#8221;</p>
</div>
<div>
<p>Once victims visit these infected sites, their browsers can be hijacked, allowing attackers to redirect search queries to malicious sites, increasing the scope of their attacks.</p>
</div>
<div>
<p>HP&#8217;s report suggests that the scripts used in this campaign were likely to have been developed using generative AI tools, making it easier and faster for cybercriminals to launch such attacks.</p>
</div>
<div>
<p>The advice to avoid ChromeLoader attacks is to only download software from trusted sources, be cautious of online ads, keep security features enabled, use antivirus software, and regularly update your browser and system.</p>
</div>
<p>The post <a rel="nofollow" href="https://www.qts-ltd.com/beware-chromeloader-exploit-malware-website-campaign/">Beware ChromeLoader Exploit Malware Website Campaign   </a> appeared first on <a rel="nofollow" href="https://www.qts-ltd.com">Quayside Technical Services</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://www.qts-ltd.com/beware-chromeloader-exploit-malware-website-campaign/feed/</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
			</item>
	</channel>
</rss>
