Уровень 0 · материалов: 2
В кластер входят документы об угрозах безопасности и вредоносном функционале расширений браузеров, но не входят инструменты и API для их разработки.
Общие признаки: опасные расширения для браузеров, кража данных, риски безопасности, удаленное выполнение кода
Группа выше: Вредоносное ПО на конкретных платформах
Смысл: The main idea is that the Kinogo browser extension is a dangerous tool that performs unauthorized remote code execution and data harvesting under the guise of bypassing internet censorship.
A technical analysis reveals that the Kinogo browser extension injects arbitrary remote scripts into every visited website and steals user browsing data.
Смысл: The text serves as a warning about the security risks associated with browser extensions, demonstrating how a seemingly useful tool like FastProxy can be used for cryptojacking, data harvesting, and system manipulation due to lax store policies.
A technical teardown of the FastProxy extension reveals it contains a hidden crypto-miner, disables other extensions, and performs invasive user fingerprinting.