• Home
  • Startup
  • Money & Finance
  • Starting a Business
    • Branding
    • Business Ideas
    • Business Models
    • Business Plans
    • Fundraising
  • Growing a Business
  • More
    • Innovation
    • Leadership
Trending

iPhone Users Warned — If You See This ‘Helpful’ Message, Do Not Reply

November 7, 2025

How to Keep Subways and Trains Cool in an Ever Hotter World

November 6, 2025

Here’s What Gambit And Rogue Look Like In ‘Marvel Rivals’ Season 5

November 6, 2025
Facebook Twitter Instagram
  • Newsletter
  • Submit Articles
  • Privacy
  • Advertise
  • Contact
Facebook Twitter Instagram
UptownBudget
  • Home
  • Startup
  • Money & Finance
  • Starting a Business
    • Branding
    • Business Ideas
    • Business Models
    • Business Plans
    • Fundraising
  • Growing a Business
  • More
    • Innovation
    • Leadership
Subscribe for Alerts
UptownBudget
Home » Never Use These 100 Websites With Google Chrome
Innovation

Never Use These 100 Websites With Google Chrome

adminBy adminMay 25, 20250 ViewsNo Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email

A serious new warning for Google Chrome users this week, with the release of a list of websites you must never use. There’s a twist though. These websites hide behind major brands and trick you into installing dangerous malware. The tell is simple though — so while the list of websites is linked below, there’s an easier way to stay safe.

With Chrome users already facing a critical update warning, DomainTools found more than 100 websites [listed here on Github] “masquerading as legitimate services, productivity tools, ad and media creation or analysis assistants, VPNs, Crypto, banking and more.” Each website includes a Get Chrome Extension or Add to Chrome button.

DomainTools warns that while the extensions correspond to ones on Google’s Chrome Web Store (CWS), these “typically have a dual functionality, in which they generally appear to function as intended, but also connect to malicious servers to send user data, receive commands, and execute arbitrary code.”

DomainTools has examples of fake DeepSeek, YouTube, Flight Radar, Calendly and VPN websites and extensions as lures. Extensions partially work, but are “configured with excessive permissions to interact with every site the browser visits and retrieve and execute arbitrary code from a network of other actor controlled domains.”

Unsurprisingly, the hosting infrastructure is common across the campaign. While mimicking DeepSeek and YouTube is simple brand hijacking, fake VPN extensions as a means to attack Chrome users ie beyond ironic. These VPN extensions connect to a malicious backend client [to]

listen for commands.” When instructed, the extension “uses chrome.cookies.getAll({}) to retrieve all browser cookies.” it can even inject scripts into open Chrome tabs to run its own malicious code.

DomainTools says these attacks have been more than a year in the making. “This malicious actor has deployed over 100 fake websites and malicious Chrome extensions with dual functionalities. Analysis revealed these extensions can execute arbitrary code from attacker-controlled servers on all visited websites, enabling credential theft, session hijacking, ad injection, malicious redirects, traffic manipulation, and phishing via DOM manipulation. Some extensions were also observed attempting to steal all browser cookies, which may lead to account compromises.”

While the Chrome Web Store “has removed multiple of the actor’s malicious extensions after malware identification,” DomainTools warns “the time lag in detection and removal pose a threat to users seeking productivity tools and browser enhancements.”

To stay safe, check carefully before installing extensions. While that means using official stores, it also means checking names and reviews carefully and ensuring developers behind those extensions have been verified. Such add-on software is a well-proven vulnerability with Chrome, and “vigilance is key to avoiding these threats.”

Most of the API domains identified by DomainTools as being part of this attack have a .TOP top level domain. Yet another warning to see .TOP as high risk at all times.

Read the full article here

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Articles

iPhone Users Warned — If You See This ‘Helpful’ Message, Do Not Reply

Innovation November 7, 2025

Here’s What Gambit And Rogue Look Like In ‘Marvel Rivals’ Season 5

Innovation November 6, 2025

Did Western Digital And Seagate Ship Fewer HDDs Last Quarter?

Innovation November 5, 2025

Coca-Cola’s Latest Ads Fail To Make the Case For Using AI

Innovation November 4, 2025

Tuesday, November 4 Clues, Answers

Innovation November 3, 2025

Today’s Answers Explained (Monday, November 3, #876)

Innovation November 2, 2025
Add A Comment

Leave A Reply Cancel Reply

Editors Picks

iPhone Users Warned — If You See This ‘Helpful’ Message, Do Not Reply

November 7, 2025

How to Keep Subways and Trains Cool in an Ever Hotter World

November 6, 2025

Here’s What Gambit And Rogue Look Like In ‘Marvel Rivals’ Season 5

November 6, 2025

Donald Trump’s Truth Social Is Launching a Polymarket Competitor

November 5, 2025

Did Western Digital And Seagate Ship Fewer HDDs Last Quarter?

November 5, 2025

Latest Posts

Coca-Cola’s Latest Ads Fail To Make the Case For Using AI

November 4, 2025

AI Agents Are Terrible Freelance Workers

November 3, 2025

Tuesday, November 4 Clues, Answers

November 3, 2025

Today’s Answers Explained (Monday, November 3, #876)

November 2, 2025

China Dives in on the World’s First Wind-Powered Undersea Data Center

November 1, 2025
Advertisement
Demo

UptownBudget is your one-stop website for the latest news and updates about how to start a business, follow us now to get the news that matters to you.

Facebook Twitter Instagram Pinterest YouTube
Sections
  • Growing a Business
  • Innovation
  • Leadership
  • Money & Finance
  • Starting a Business
Trending Topics
  • Branding
  • Business Ideas
  • Business Models
  • Business Plans
  • Fundraising

Subscribe to Updates

Get the latest business and startup news and updates directly to your inbox.

© 2025 UptownBudget. All Rights Reserved.
  • Privacy Policy
  • Terms of use
  • Press Release
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.