No Result
View All Result
Global Finances Daily
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers
  • Login
Global Finances Daily
No Result
View All Result
Home Protection

These Popular Chrome Extensions Are Stealing Your AI Chats

January 10, 2026
in Protection
0
These Popular Chrome Extensions Are Stealing Your AI Chats



Hackers continue to find ways to sneak malicious extensions into the Chrome web store—this time, the two offenders are impersonating an add-on that allows users to have conversations with ChatGPT and DeepSeek while on other websites and exfiltrating the data to threat actors’ servers.

Beware these Chrome extensions

On the surface, the two extensions identified by Ox Security researchers look pretty benign. The first, named “Chat GPT for Chrome with GPT-5, Claude Sonnet & DeepSeek AI,” has a Featured badge and 2.7K ratings with over 600,000 users. “AI Sidebar with Deepseek, ChatGPT, Claude and more” appears verified and has 2.2K ratings with 300,000 users.

However, these add-ons are actually sending AI chatbot conversations and browsing data directly to threat actors’ servers. This means that hackers have access to plenty of sensitive information that users share with ChatGPT and DeepSeek as well as URLs from Chrome tabs, search queries, session tokens, user IDs, and authentication data. Any of this can be used to conduct identity theft, phishing campaigns, and even corporate espionage.

Researchers found that the extensions impersonate legitimate Chrome add-ons developed by AITOPIA that add a sidebar to any website with the ability to chat with popular LLMs. The malicious capabilities stem from a request for consent for “anonymous, non-identifiable analytics data.” Threat actors are using Lovable, a web development platform, to host privacy policies and infrastructure, obscuring their processes.

Researchers also found that if you uninstalled one of the extensions, the other would open in a new tab in an attempt to trick users into installing that one instead.

How to avoid malicious browser add-ons

If you’ve added AI-related extensions to Chrome, go to chrome://extensions/ and look for the malicious impersonators. Hit Remove if you find them. As of this writing, the extensions identified by Ox no longer appear in the Chrome Web Store.


What do you think so far?

As I’ve written about before, malicious extensions occasionally evade detection and gain approval from browser libraries by posing as legitimate add-ons, even earning “Featured” and “Verified” tags. Some threat actors playing the long game will convert extensions to malware several years after launch. This means you can’t blindly trust ratings and reviews, even if they’ve been accrued over time.

To minimize risk, you should always vet browser extensions carefully (even those that appear legit) for obvious red flags, like misspellings in the description and a large number of positive reviews accumulated in a short time. Head to Google or Reddit to see if anyone has identified the add-on as malicious or found any issues with the developer or source. Make sure you’re downloading the right extension—threat actors often try to confuse users with names that appear similar to popular add-ons.

Finally, you should regularly audit your extensions and remove those that aren’t essential. Go to chrome://extensions/ to see everything you have installed.



Editorial Team

Editorial Team

Related Posts

The Samsung Galaxy S25 FE Is $200 Off Right Now
Protection

The Samsung Galaxy S25 FE Is $200 Off Right Now

February 12, 2026
These JBL Tour One M3 Headphones Turned Me Into an Audio Snob
Protection

These JBL Tour One M3 Headphones Turned Me Into an Audio Snob

February 12, 2026
AI Chatbots Are Even Worse at Giving Medical Advice Than We Thought
Protection

AI Chatbots Are Even Worse at Giving Medical Advice Than We Thought

February 12, 2026
This Apple Watch Series 9 With Cellular Connectivity Is 25% Off Right Now
Protection

This Apple Watch Series 9 With Cellular Connectivity Is 25% Off Right Now

February 12, 2026
Two Years Later, Is the Apple Vision Pro Even Worth It
Protection

Two Years Later, Is the Apple Vision Pro Even Worth It

February 12, 2026
These Nothing Headphones Are at Their Lowest Price Ever Right Now
Protection

These Nothing Headphones Are at Their Lowest Price Ever Right Now

February 12, 2026
Load More
Next Post
UK FCA Sets 2026 Window for Crypto License Applications

UK FCA Sets 2026 Window for Crypto License Applications

Popular News

  • Josh Garber

    How to Contact Hilton Customer Service

    0 shares
    Share 0 Tweet 0
  • The 10 best banks for college students in 2025

    0 shares
    Share 0 Tweet 0
  • I Used Monarch Money for 30 Days: Here’s What Happened

    0 shares
    Share 0 Tweet 0
  • 5 Things to Know About the Yendo Credit Card

    0 shares
    Share 0 Tweet 0
  • State pension remains a critical income for retirees, report shows

    0 shares
    Share 0 Tweet 0

Latest News

The Samsung Galaxy S25 FE Is $200 Off Right Now

The Samsung Galaxy S25 FE Is $200 Off Right Now

February 12, 2026
0

We may earn a commission from links on this page. Deal pricing and availability subject to change after time of...

Hyperliquid price continues lower bearish targets $19.75

Hyperliquid price confirms support at $28.40

February 12, 2026
0

Hyperliquid price is showing early signs of a bullish market structure shift after confirming strong demand at $28.40, setting the...

Brigade bags $1bn for oversubscribed private credit debut

Brigade bags $1bn for oversubscribed private credit debut

February 12, 2026
0

Brigade Capital Management has raised $1bn (£733m) at the final close of its inaugural private credit fund. The global asset...

These apps offer quick cash, but some users say they’re trapped in debt. This loophole is their escape hatch.

These apps offer quick cash, but some users say they’re trapped in debt. This loophole is their escape hatch.

February 12, 2026
0

Because they aren’t technically lenders, these apps don’t charge traditional interest.

Global Finances Daily

Welcome to Global Finances Daily, your go-to source for all things finance. Our mission is to provide our readers with valuable information and insights to help them achieve their financial goals and secure their financial future.

Subscribe

  • About Us
  • Contact
  • Privacy Policy
  • Terms of Use
  • Editorial Process

© 2025 All Rights Reserved - Global Finances Daily.

No Result
View All Result
  • Alternative Investments
  • Crypto
  • Financial Markets
  • Investments
  • Lifestyle
  • Protection
  • Retirement
  • Savings
  • Work & Careers

© 2025 All Rights Reserved - Global Finances Daily.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.