Complete Story


Is Your Browser Extension a Botnet Backdoor?

Krebs on Security

A company that rents out access to more than 10 million Web browsers so that clients can hide their true Internet addresses has built its network by paying browser extension makers to quietly include its code in their creations. This story examines the lopsided economics of extension development, and why installing an extension can be such a risky proposition.

Singapore-based Infatica[.]io is part of a growing industry of shadowy firms trying to woo developers who maintain popular browser extensions — desktop and mobile device software add-ons available for download from AppleGoogleMicrosoft and Mozilla designed to add functionality or customization to one’s browsing experience.


Printer-Friendly Version