Categories: NewsTech

PSA: These Ad blockers are affected by malware, uninstall them now

Ad blockers like Nano Adblocker and Defender are supposed to help filter out annoying advertisements while you browse the web. Unfortunately, the Chrome versions of the two ad blocking extensions were found to have malware installed that secretly uploading their browsing data and tampered with social media accounts.

This comes as a post on Github highlighted this problem occurred when the new owner of the extension rolled out updates that added malicious code.

The original developer of the extensions, Hugo Xu, explained that he sold the rights to the versions available in Google’s Chrome Web Store as he no longer had the time to maintain them.

Users of the extension noticed their browsers behaving strangely like automatically issuing ‘likes’ for many Instagram posts without any input by users. An artificial intelligence and machine learning research Cyril Gorlla told ArsTechnica that his browser liked more than 200 images from an Instagram account that did not follow anyone.

This isn’t the first time browser extensions have been up to no good. Earlier this month, another Chrome extension called User Agent Switch, which had more an installation base of more than 100,000 active users was doing the same thing. Google has since removed the offending extension.

Other users of the extension reported in a Github forum that infected browsers were also accessing their user accounts that weren’t already opened in their browsers. It is suspected that the extension was accessing authentication cookies and trying using them to gain access to user accounts. 

Google has already acted by removing the offending extensions from its Chrome Web Store and issued a warning that they are not safe. It advises anyone who has installed the extensions to remove them immediately.

It should be noted that both Nano Adblocker and Nano Defender are also available on other extension stores like on Firefox and Microsoft Edge. The original developer claims that both these extensions are not affected by the malware. However, as the Edge browser can install extensions from the Chrome Web Store, there remains a possibility it too can be infected this way.

Because these extensions may upload your browsing session cookies means that anyone who has been infected should fully log out of all websites. By doing so, this would invalidate the session cookies and prevent anyone from using them to gain unauthorised access. If you are really paranoid, you can take it a step further by changing your passwords to be on the safe side.

This latest incident serves as a reminder that anyone can acquire an established browser extension and use it to infect a large user base. The only remedy to this problem to routinely review your browser extensions and remove those that you no longer use.

[SOURCE]

Related reading

Recent Posts

Tesla Malaysia: Full Self-Driving one-time purchase option no longer available from 1st July 2026

If you're a current or upcoming Tesla EV owner, take note that Full Self-Driving (FSD)…

13 hours ago

Report: iPhone 18 Pro could cost over RM6,300 as Apple faces soaring memory prices

Be prepared to pay significantly more for your next brand new iPhone which is expected…

17 hours ago

Dongfeng Malaysia showcases 008, M-Hero II and Voyah Dream at KLIMS 2026

Dongfeng Malaysia is showcasing three new energy vehicles at KLIMS 2026 that could potentially enter…

1 day ago

Tune Talk Epik+ Family Prepaid: 1200GB 5G data, 5 lines, Roam like Home and RM500K PA Insurance for RM128/month

Looking for a Family Plan that offers lots of data for less? Tune Talk has…

2 days ago

Hotlink Postpaid offers 500GB data with uncapped 5G speed for RM40/month

Hotlink has just introduced a new value for money postpaid plan which bundles more data…

2 days ago

5G subscriptions surpass 3 billion worldwide, Ericsson says Malaysian firms are still early in AI adoption

Global 5G subscriptions have surpassed the three billion mark, according to the latest Ericsson Mobility…

2 days ago

This website uses cookies.