Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts

Microsoft has shut down a long-running malicious extension operation on the Edge Add-ons store that hid its payloads inside ordinary image and font files, then woke up days after install to steal credentials and run ad fraud.

The company calls it StegoAd, a mash-up of steganography and adware, and ties 119 extensions to a single threat actor it says has been active since at least 2021.

Source: The Hacker News

Leave a Reply

Your email address will not be published. Required fields are marked *

Explore More

Tailscale didn’t stop the Hugging Face intrusion

Tailscale didn’t stop the Hugging Face intrusion Source: Hacker News

Eight Myths on Software Engineering and GenAI

Eight Myths on Software Engineering and GenAI Source: Hacker News

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More A single request should not be able to do this much. But this week, small inputs