Chrome, Firefox browser extensions leaked millions of users' data

Agencies
July 20, 2019

Popular browser extensions like ad blockers have been caught harvesting personal data of millions of consumers who use Chrome and Firefox -- not only their browsing histories but also exposing tax returns, medical records, credit card information and other sensitive data in the public domain.

According to an independent cyber security researcher Sam Jadali, the data has been leaked to a fee-based company called Nacho Analytics that gives unlimited access to any websites analytics data.

The data could be purchased for as little as $10 to $50, said Jadali whose report was first described in Ars Technica late on Friday.

"This non-stop flow of sensitive data over the past seven months has resulted in the publication of links to home and business surveillance videos hosted on Nest and other security services.

"Tax returns, billing invoices, business documents, and presentation slides posted to, or hosted on, Microsoft OneDrive, Intuit.com, and other online services" have been exposed, said the report.

The exposed data via eight browser extensions also include vehicle identification, numbers of recently bought automobiles, along with the names and addresses of the buyers.

Patient details, travel itineraries, Facebook Messenger attachments and Facebook photos, even private, are now available in the public domain.

Browser extensions - also known as plug-ins or add-ons - are apps that consumers can install to run alongside their browser for additional functionality.

The affected extensions were apps used by millions of people, including HoverZoom, SpeakIt!, and FairShare Unlock.

"The extensions have been remotely removed or disabled in consumers' browsers and are no longer available for download," said both Google and Firefox.

People who didn't download the extensions may also be affected.

"Nobody is immune to this. Even if you don't have any harmful extensions, the other people you interact with may have an extension on their computers that could be leaking the data you share with them," Jadali was quoted as saying.

Nacho Analytics, for example, promises to let people "see anyone's analytics account" and to provide "real-time web analytics for any website".

The company charges $49 per month, per domain, to monitor any of the top 5,000 most widely-trafficked websites.

The security expert has suggested users to delete all browser extensions they have installed in the past.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
June 22,2020

New Delhi, Jun 22: With an increase of 14,821 new cases and 445 deaths, India's COVID-19 count reached 4,25,282 on Monday.

According to the latest update by the Union Ministry of Health and Family Welfare (MoHFW), 13,699 deaths have been recorded due to the infection so far in the country.

The rise in confirmed cases today is lower than the highest spike of 15 thousand plus cases registered on Sunday.

The count includes 1,74,387 active cases, and 2,37,196 cured/discharged/migrated patients.

Maharashtra with 1,32,075 confirmed cases remains the worst-affected by the infection so far in the country. The state's count includes 60,161 active, 65,744 cured, discharged patients while 6,170 deaths have been reported due to the infection so far.

Meanwhile, the national capital today became the second-worst affected region in the country with the number of confirmed cases in Delhi reaching 59,746 as opposed to Tamil Nadu's 59,377 cases.

While 2,175 deaths have been reported in Delhi due to the infection so far, the toll in Tamil Nadu stands at 757.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
March 2,2020

New Delhi, Mar 2: Senior Congress leader P Chidambaram on Sunday hit out at Union Home Minister Amit Shah for his comments that no one from the minority community will be affected by amended Citizenship Act and asked why then was the community excluded from the law in the first place.

Addressing a rally in Kolkata, Shah assured people of the minority community that not a single person will lose citizenship due to the Citizenship (Amendment) Act (CAA).

"The Home Minister says that no minority will be affected by CAA. If this is correct, they should tell the country who would be affected by CAA. If no one would be affected by CAA, as it currently is, why did the government pass the law?

"If the CAA aims to benefit all minorities (no one will be affected, says HM), then why are Muslims excluded from the list of minorities mentioned in the Act?," the former finance minister asked in a post on Twitter.

At his first public rally in Kolkata after the 2019 general elections, Shah said, "The opposition is terrorising the minorities. I assure every person from the minority community that the CAA only provides citizenship, does not take it away. It won't affect your citizenship."

"The opposition parties are spreading canards that refugees will have to show papers but this is absolutely false. You don't have to show any paper. We will not stop until all refugees are granted citizenship," Shah told the public.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
May 15,2020

May 15: Global tensions simmered over the race for a coronavirus vaccine Thursday, as the United States and China traded jabs, and France slammed pharmaceuticals giant Sanofi for suggesting the US would get any eventual vaccine first.

Scientists are working at breakneck speed to develop a vaccine for COVID-19, the disease caused by the virus, which has killed more than 300,000 people worldwide and pummelled economies.

From the US to Europe to Asia, national and local governments are easing lockdown orders to get people back to work -- while fretting over a possible second wave of infections.

Increased freedom of movement means an increased risk of contracting the virus, and so national labs and private firms are labouring to find the right formula for a vaccine.

The European Union's medicines agency offered some hope when it said one could be ready in a year, based on data from clinical trials already underway.

But Marco Cavaleri, the EMA's head of vaccines strategy, acknowledged that timeline was a "best-case scenario," and cautioned that "there may be delays."

The race for a vaccine has exposed a raw nerve in relations between the United States and China, where the virus was first detected late last year in the central city of Wuhan.

Two US agencies warned Wednesday that Chinese hackers were trying to steal COVID-19 vaccine research -- a claim Beijing rejected as "smearing" its reputation.

US President Donald Trump, who has ratcheted up the rhetoric against China, said he doesn't even want to engage with Chinese leader Xi Jinping -- potentially imperilling a trade deal between the world's top two economies.

"I'm very disappointed in China. I will tell you that right now," he said in an interview with Fox Business.

"There are many things we could do. We could do things. We could cut off the whole relationship."

On Capitol Hill, an ousted US health official told Congress that the Trump government had no strategy in place to find and distribute a vaccine to millions of Americans, warning of the "darkest winter" ahead.

"We don't have a single point of leadership right now for this response, and we don't have a master plan," said Rick Bright, who was removed last month as head of the US agency charged with developing a coronavirus vaccine.

The United States has registered nearly 86,000 deaths linked to COVID-19 -- the highest toll of any nation.

World leaders were among 140 signatories to a letter published Thursday saying any vaccine should not be patented and that the science should be shared among nations.

"Governments and international partners must unite around a global guarantee which ensures that, when a safe and effective vaccine is developed, it is produced rapidly at scale and made available for all people, in all countries, free of charge," it said.

But a row erupted in France after drugmaker Sanofi said it would reserve first shipments of any vaccine it discovered to the United States.

The comments prompted a swift rebuke from the French government -- President Emmanuel Macron's office said any vaccine should be treated as "a global public good, which is not submitted to market forces."

Sanofi chief executive Paul Hudson said the US had a risk-sharing model that allowed for manufacturing to start before a vaccine had been finally approved -- while Europe did not.

"The US government has the right to the largest pre-order because it's invested in taking the risk," Hudson told Bloomberg News.

Macron's top officials are scheduled to meet with Sanofi executives about the issue next week.

The search for a vaccine became even more urgent after the World Health Organization said the disease may never go away and the world would have to learn to live with it for good.

"This virus may become just another endemic virus in our communities and this virus may never go away," said Michael Ryan, the UN body's emergencies director.

The prospect of the disease lingering leaves governments facing a delicate balancing act between suppressing the pathogen and getting their economies up and running.

In the US, more grim economic data emerged Thursday, with nearly three million more Americans applying for unemployment benefits.

That takes the overall total to 36.5 million -- more than 10 percent of the US population.

Further signs of the damage to businesses emerged when Lloyd's of London forecast the pandemic will cost the global insurance industry about $203 billion.

European markets closed down, but Wall Street rallied despite the new jobless claims. In a sign of progress, the New York Stock Exchange trading floor was due to reopen on May 26.

The reopening of economies continued in earnest across Europe, where the EU has set out proposals for a phased restart of travel and the eventual lifting of border controls.

"Maybe it's a mistake, but we have no choice. Without tourists, we won't get by!" Enrico Facchetti, a 61-year-old former goldsmith, said of Venice's reopening.

Japan -- the world's third largest economy -- lifted a state of emergency across most of the country except for Tokyo and Osaka.

And Canadian Prime Minister Justin Trudeau said national parks would partially reopen on June 1.

But in Latin America, the virus continued to surge, with a 60 percent leap in cases in the Chilean capital of Santiago.

Authorities said 2,000 new graves were being dug at the main cemetery.

South Sudan reported its first COVID-19 death on Thursday.

And in Bangladesh, the first case was confirmed in the teeming Rohingya refugee camps in Bangladesh, which are home to nearly one million people.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.