Chrome, Firefox browser extensions leaked millions of users' data

Agencies
July 20, 2019

Popular browser extensions like ad blockers have been caught harvesting personal data of millions of consumers who use Chrome and Firefox -- not only their browsing histories but also exposing tax returns, medical records, credit card information and other sensitive data in the public domain.

According to an independent cyber security researcher Sam Jadali, the data has been leaked to a fee-based company called Nacho Analytics that gives unlimited access to any websites analytics data.

The data could be purchased for as little as $10 to $50, said Jadali whose report was first described in Ars Technica late on Friday.

"This non-stop flow of sensitive data over the past seven months has resulted in the publication of links to home and business surveillance videos hosted on Nest and other security services.

"Tax returns, billing invoices, business documents, and presentation slides posted to, or hosted on, Microsoft OneDrive, Intuit.com, and other online services" have been exposed, said the report.

The exposed data via eight browser extensions also include vehicle identification, numbers of recently bought automobiles, along with the names and addresses of the buyers.

Patient details, travel itineraries, Facebook Messenger attachments and Facebook photos, even private, are now available in the public domain.

Browser extensions - also known as plug-ins or add-ons - are apps that consumers can install to run alongside their browser for additional functionality.

The affected extensions were apps used by millions of people, including HoverZoom, SpeakIt!, and FairShare Unlock.

"The extensions have been remotely removed or disabled in consumers' browsers and are no longer available for download," said both Google and Firefox.

People who didn't download the extensions may also be affected.

"Nobody is immune to this. Even if you don't have any harmful extensions, the other people you interact with may have an extension on their computers that could be leaking the data you share with them," Jadali was quoted as saying.

Nacho Analytics, for example, promises to let people "see anyone's analytics account" and to provide "real-time web analytics for any website".

The company charges $49 per month, per domain, to monitor any of the top 5,000 most widely-trafficked websites.

The security expert has suggested users to delete all browser extensions they have installed in the past.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
January 6,2020

Jammu, Jan 6: Union Minister Jitendra Singh on Sunday said India is the only shelter for religiously persecuted Hindus, Sikhs and other minorities who come from Pakistan, Bangladesh or Afghanistan, for the safety of their life and honour.

"India owes responsibility towards the minorities living in these countries which proclaim Islam as their state religion," Singh said here while launching the BJP's countrywide 10-day mass contact drive to spread awareness about the Citizenship Amendment Act (CAA).

Accompanied by senior party colleagues, including former deputy chief minister Kavinder Gupta and former minister Sat Sharma, he began by visiting the house of veteran columnist, writer and Padmashri awardee K L Pandita, where he spent time with them discussing the Act.

Later, he visited prominent social activist Amjad Mirza, eminent Sikh religious leader Baba Swaranjit Singh, retired High Court judge Justice G D Sharma, veteran journalist and former bureau head of Hind Samachar group Gopal Sachar, retired principal of Jammu government medical college Subhash Gupta, social activist and president of Peoples' Forum Ramesh Sabharwal, among others.

During his interaction with them, the Minister of State in the Prime Minister's Office claimed that Congress leaders and their allies protesting against the Act are doing so without "conviction".

He opined that if a "survey" was conducted among the family members of these Congress leaders, then, even they would not support their "anti-CAA stand".

"The tragedy of Congress party and contemporary leaders of Congress is that either they do not read their own history or are blissfully ignorant of the statements made by their own party patriarchs and former prime ministers," he said.

The minister recalled that the Nehru-Liaquat Pact of 1950 was inspired by the realisation on the part of the then Congress government headed by prime minister Jawaharlal Nehru that minorities, particularly Hindus, were not getting a fair deal in Pakistan.

"In 1949, Nehru had written a letter expressing concern about people coming in from then East Pakistan, which is now Bangladesh, and while doing so, he had referred to Hindus coming from there as 'refugees' and Muslims arriving here as 'immigrants'," Singh said.

Further, Nehru had stated that India owed a "responsibility" to these refugees, the minister said.

Referring to the opposition of senior Congress leaders Rahul Gandhi and Priyanka Gandhi to the amended legislation, the minister said someone should show them records of proceedings of the winter session of Parliament in 1950 when their great-grandfather (Nehru) had himself said that they deserved to be given citizenship and if the law was inadequate for it, then, the law should be changed.

"PM Modi should actually be given credit for showing courage and conviction to carry forward the task, which the Congress government lacked, to accomplish this," the minister opined.

Singh reiterated that a false fear psychosis against Muslims is being sought to be manufactured when there is no place as safe and comfortable to live for the community as India.

Turning the tables on the opposition to the National Population Register(NPR) and proposed National Register of Citizens (NRC), Singh pointed out that PM Modi and Union Home Minister Amit Shah have been stating that the exercise on NRC is yet to begin.

He also said that it was then Union home minister P Chidambaram, who had stated in Parliament in 2010 that NPR could be a basis for NRC.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
March 14,2020

New Delhi, Mar 14: Excise duty on petrol and diesel was on Saturday hiked by ₹3 per litre as the government looked to mop up gains arising from fall in international oil prices.

Special excise duty on petrol was hiked by ₹2 to ₹8 per litre incase of petrol and to Rs 4 incase of diesel, an official notification said.

Additionally, road cess on petrol was raised by ₹1 per litre each on petrol and diesel to ₹10.

The increase in excise duty would in normal course result in a hike in petrol and diesel prices but most of it would be adjusted against the fall in rates that would have necessitated because of slump in international oil prices.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 13,2020

New Delhi, Jul 13: The Income Tax Department has facilitated a new functionality for banks and post offices to ascertain TDS applicability rates on cash withdrawal of above Rs 20 lakh in case of a non-filer of the income-tax return and that of above Rs 1 crore in case of a filer of the income-tax return.

In a statement, the Central Board of Direct Taxes (CBDT) said that now banks and post offices have to only enter the PAN of the person who is withdrawing cash for ascertaining the applicable rate of TDS.

So far, more than 53,000 verification requests have been executed successfully on this facility, a statement by the CBDT said.

"CBDT today said that this functionality available as 'Verification of applicability u/s 194N' on www.incometaxindiaefiling.gov.in since 1st July 2020, is also made available to the Banks through web-services so that the entire process can be automated and be linked to the Bank's internal core banking solution," it said.

On entering PAN by the bank or the post office, a message will be instantly displayed on the departmental utility: "TDS is deductible at the rate of 2 per cent if cash withdrawal exceeds Rs 1 crore", in case the person withdrawing cash is a filer of the income-tax return.

In case the person withdrawing cash is a non-filer of income tax return, the message shown would be: "TDS is deductible at the rate of 2 per cent if cash withdrawal exceeds Rs 20 lakh and at the rate of 5 per cent if it exceeds Rs 1 crore."

The CBDT said that the data on cash withdrawal indicated that huge amount of cash is withdrawn by the persons who have never filed income-tax returns.

To ensure filing of return by these persons and to keep track on cash withdrawals by the non-filers, and to curb black money, the Finance Act, 2020 with effect from July 1, 2020 further amended IT Act to lower threshold of cash withdrawal to Rs 20 lakh for the applicability of this TDS for the non-filers and also mandated TDS at the higher rate of 5 per cent on cash withdrawal exceeding Rs 1 crore by the non-filers.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.