Chrome, Firefox browser extensions leaked millions of users' data

Agencies
July 20, 2019

Popular browser extensions like ad blockers have been caught harvesting personal data of millions of consumers who use Chrome and Firefox -- not only their browsing histories but also exposing tax returns, medical records, credit card information and other sensitive data in the public domain.

According to an independent cyber security researcher Sam Jadali, the data has been leaked to a fee-based company called Nacho Analytics that gives unlimited access to any websites analytics data.

The data could be purchased for as little as $10 to $50, said Jadali whose report was first described in Ars Technica late on Friday.

"This non-stop flow of sensitive data over the past seven months has resulted in the publication of links to home and business surveillance videos hosted on Nest and other security services.

"Tax returns, billing invoices, business documents, and presentation slides posted to, or hosted on, Microsoft OneDrive, Intuit.com, and other online services" have been exposed, said the report.

The exposed data via eight browser extensions also include vehicle identification, numbers of recently bought automobiles, along with the names and addresses of the buyers.

Patient details, travel itineraries, Facebook Messenger attachments and Facebook photos, even private, are now available in the public domain.

Browser extensions - also known as plug-ins or add-ons - are apps that consumers can install to run alongside their browser for additional functionality.

The affected extensions were apps used by millions of people, including HoverZoom, SpeakIt!, and FairShare Unlock.

"The extensions have been remotely removed or disabled in consumers' browsers and are no longer available for download," said both Google and Firefox.

People who didn't download the extensions may also be affected.

"Nobody is immune to this. Even if you don't have any harmful extensions, the other people you interact with may have an extension on their computers that could be leaking the data you share with them," Jadali was quoted as saying.

Nacho Analytics, for example, promises to let people "see anyone's analytics account" and to provide "real-time web analytics for any website".

The company charges $49 per month, per domain, to monitor any of the top 5,000 most widely-trafficked websites.

The security expert has suggested users to delete all browser extensions they have installed in the past.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
News Network
June 16,2020

New Delhi, June 16: Tensions along the Line of Control border between India and China have spiked with an Indian army officer and two soldiers killed in the Galwan area of Ladakh, the Indian army said in a statement on Tuesday.

This is the first time in decades that a clash involving casualties has taken place on the 3,488 kilometre border between India and China.

"During the de-escalation process underway in the Galwan Valley, a violent face-off took place yesterday night with casualties. The loss of lives on the Indian side includes an officer and two soldiers. Senior military officials of the two sides are currently meeting at the venue to defuse the situation," said an official statement.

The two sides had made headway in talks last week with army chief General MM Naravane saying disengagement was in progress. The development had come after weeks of tension, including an incident in which patrolling soldiers from the two sides came to blows on the banks of Pangong Lake, resulting in injuries.

The two armies have since thinned out some forces in a positive signal but soldiers, tanks and other armoured carriers remained heavily deployed in the high-altitude region, an official had said.

India and China fought a brief border war in 1962 and have not been able to settle their border despite two decades of talks. Both claim thousands of kilometres of territory and patrols along the undemarcated Line of Actual Control - the de-facto border - often run into each other, leading to tensions. 

Comments

Angry Indian
 - 
Tuesday, 16 Jun 2020

where is our angry desh bakth RSS and sanghi...hiding in rat hole or @%#hole...now you can show your 56 inch chest to chinese...when pakistan destroyed our two fighter jet that time i relised we are making an monkey army not indian army...still time exist, still we have courage army...but we lack leader...we have maron PM...and some dog follower..they only know to bark in media and whatsapp...in reality they are just real na pustak...

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 28,2020

New Delhi, Jul 28: India on Wednesday reported 47,704 more COVID-19 cases in the last 24 hours, taking the country's count of coronavirus cases to 14,83,157, informed the Union Ministry of Health and Family Welfare.

Out of the total cases, there are 4,96,988 active cases in the country while the number of patients cured/discharged and migrated stands at 9,52,744.

With 654 deaths due to COVID-19 in the country reported in the last 24 hours, the death toll rises to 33,425.

The recovery rate among COVID-19 patients has increased to 64.23 per cent. The recoveries to deaths ratio is 96.6 per cent:3.4 per cent, informed the Centre.

As per the data provided by the Ministry, Maharashtra continues to be the worst-affected state from the infection with 1,48,905 active cases and 13,656 deaths due to COVID-19. Tamil Nadu has a total of 53,703 active cases and 3,494 deaths.

Delhi has a total of 11,904 active cases and 3,827 deaths.

The Health Ministry further informed that more than 5 lakh COVID-19 tests were conducted in a single day over two consecutive days. On 26th July, India tested a total of 5,15,000 samples and on 27th July, a total of 5,28,000 samples were tested.

The total number of COVID-19 samples tested up to July 27 is 1,73,34,885 including 5,28,082 samples tested yesterday, said the Indian Council of Medical Research (ICMR).

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
June 12,2020

Mumbai, Jun 12: Following an overwhelming response for the mega rights issue of Mukesh Ambani-owned Reliance Industries, the partly paid-up rights shares are set to debut on stock exchanges on June 15.

The biggest ever Rs 53,124 crore rights issue was subscribed 1.59 times and received bids worth Rs 84,000 crore on June 3.

Reliance said the rights issue saw a huge investor interest, including from lakhs of small investors and thousands of institutional investors, both Indian and foreign.

In 2019, Ambani said in the Reliance's annual general meeting that the company will be net zero debt by March 2021. The company is on course to achieve its target ahead of the deadline.

"In spite of the COVID-19 crisis and the lockdowns, the due-diligence by Saudi Aramco for the planned investment in the O2C business is on track as both the parties are committed and actively engaged," he said recently.

"With a strong visibility to these equity infusions, Reliance is set to achieve net zero debt status ahead of its own aggressive timeline. We believe rights issue was a part of the company's strategy of deleveraging its balance sheet," said Ambani. 

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.