4.3 million have installed this malicious browser extension on Chrome and Edge – here’s how to check


  • The ShadyPanda campaign made 145 Chrome/Edge extensions harmful after years of normal use
  • Updates added affiliate fraud, cookie theft, search hijacking, and remote code execution
  • 4.3 million units at risk; Google removed extensions, Microsoft slower to respond

More than a hundred browser extensions spread across Google Chrome and Microsoft Edge browsers became malicious after five years of “normal” operation. The attackers apparently played the long con game – building trust for years before pulling the trigger on unsuspecting victims. Apparently, about 4.3 million devices are at risk.

This is according to security researchers Koi Security, who discovered the campaign, which it later named: ShadyPanda.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top