
Avoid Falling for Scams: Unmasking the Chrome Hack That Steals Your Facebook Login Details

How a Counterfeit Chrome App Puts Your Facebook Login at Risk – Stay Safe Online
A malicious Chrome extension using ChatGPT’s name is being used to steal users’ Facebook logins for malicious advertising.
A Fake ChatGPT Extension Is Targeting Facebook Users
Facebook and Chrome users are being targeted by a malicious browser extension using the well-known name of theAI-powered chatbot ChatGPT .
On March 8, 2023, Guardio Labs researcher Nati Tal stated in a Medium blog post that “a Chrome Extension propelling quick access to fake ChatGPT functionality was found to be hijacking Facebook accounts and installing hidden account backdoors.”
In theMedium blog post , Tal also noted the use of “a malevolent silently forced Facebook app ‘backdoor’ giving the threat actors super-admin permissions.” The extension can also harvest victims’ browser cookies.
Guardio took to Twitter to warn readers of the malicious campaign.
The phony browser extension, named “Quick access to Chat GPT”, can hack high-profile Facebook accounts to create “hijacked Facebook bot accounts”. The threat actor is then “publishing more sponsored posts and other social activities on behalf of its victim’s profiles and spending business account money credits.”
It was also speculated in the blog post that, once the attacker has accessed your data, they will “probablysell it to the highest bidder as usual.”
Thousands of Facebook Accounts May Have Been Compromised
In this malicious campaign, thousands of Facebook accounts may have been successfully hijacked. In the aforementioned blog post, it was stated that there are “more than 2000 users installing this extension on a daily basis since its first appearance on 03/03/2023.”
On top of this, Tal wrote that each one of the individuals installing the add-on “gets his Facebook account stolen and probably this is not the only damage,” suggesting that other consequences may arise from the extension’s presence.
The Malicious App Has Been Removed from Chrome
Though thousands have downloaded this phony browser extension, it has now been taken down from the Google Chrome Store, preventing further attacks via Chrome-based downloads. It is not yet known exactly how many people have been affected by this campaign, but the number of installations is a definite concern.
ChatGPT’s Name Is Consistently Used by Scammers
Since ChatGPT’s rise to fame, its name has been repeatedly used by cybercriminals to gain the trust of potential victims. Whether its phony ChatGPT-related tokens, or malicious Chat GPT-branded extensions, the popularity of this AI-powered chatbot is undoubtedly being exploited by malicious actors to steal data and money.
Also read:
- [New] Cashing in on Creativity The Vimeo Income Playbook for 2024
- [New] In 2024, Fine-Tune Video Aspect Ratios for Instagram Bliss
- [Updated] In 2024, Foster Conversations via Thoughtful Instagram Quiz-Style Lives
- 1. The Ultimate Guide to Mastering Apple Pay: In-Store & Online Usage Tips - Why It's a Smart Choice
- 2024 Approved Narrative Strategies for Engaging Docu-Films
- 簡単な手順:パソコン、スマホにおいて動画から音を消す方法
- Expert Guide: Quick & Simple Methods for Changing MKV Videos to ProRes
- Festive Bargains on WonderFox Solutions – Secure Your Discount Today!
- From Still Graphics to Moving Fun: Transforming ICOs Into Animation GIFs
- Has AI Surpassed The Old Standards?: Discovering Five Cutting-Edge Alternatives to the Turing Test
- How to Edit and Upload MKV Movies on Apple Devices as M4V - User-Friendly Techniques
- In 2024, Leveraging Live Streaming for Maximum Impact on YouTube with Limited Subscribers
- In 2024, The Meme Crafter's Playbook Building a Library of Laughter (GIFs)
- Lenovo T430 Driver Updates for Windows Versions: Windows 10/8/7 Compatible Downloads
- Mastering XUMO Recording: A Guide to Three Effective Techniques
- Music Video Hunt: How to Track Down Tunes and Visuals Unnamed
- Quick & Simple Steps to Transform WMA Files Into AAC Format
- Simple Steps for Easy Snipping of DVD Footage Onto Your Device
- Troubleshooting the Missing d3dx9_24.dll File on Your PC
- Title: Avoid Falling for Scams: Unmasking the Chrome Hack That Steals Your Facebook Login Details
- Author: Jeffrey
- Created at : 2025-01-31 23:09:27
- Updated at : 2025-02-07 09:37:22
- Link: https://tech-haven.techidaily.com/1721985442829-avoid-falling-for-scams-unmasking-the-chrome-hack-that-steals-your-facebook-login-details/
- License: This work is licensed under CC BY-NC-SA 4.0.