一直听说 Chrome Store 有很多恶意扩展,前些日子看到一条语气十分营销的微博分享了一个百度云盘下载的扩展,就注意了一下。今天翻出来看了一下,果然是个恶意扩展(扩展已举报),会上报 Facebook 账号 token 到 s.truepush.com 。
微博是这条:
https://weibo.com/5671448988/GcI1uqPK4
http://webcache.googleusercontent.com/search?q=cache:https://weibo.com/5671448988/GcI1uqPK4
转发 2500 次
原文是这个:
https://www.jianshu.com/p/179164b4825e
https://web.archive.org/web/20171024200704/https://www.jianshu.com/p/179164b4825e
阅读 13308 评论 1 喜欢 18
恶意扩展叫 baidudl: https://chrome.google.com/webstore/detail/baidudl/mccebkegnopjehbdbjbepjkoefnlkhef
原作者的扩展叫 baidu-dl (没有与 Facebook 相关的恶意代码): https://chrome.google.com/webstore/detail/baidu-dl/lflnkcmjnhfedgibjackiibmcdnnoadb
微博是这条:
https://weibo.com/5671448988/GcI1uqPK4
http://webcache.googleusercontent.com/search?q=cache:https://weibo.com/5671448988/GcI1uqPK4
转发 2500 次
原文是这个:
https://www.jianshu.com/p/179164b4825e
https://web.archive.org/web/20171024200704/https://www.jianshu.com/p/179164b4825e
阅读 13308 评论 1 喜欢 18
恶意扩展叫 baidudl: https://chrome.google.com/webstore/detail/baidudl/mccebkegnopjehbdbjbepjkoefnlkhef
原作者的扩展叫 baidu-dl (没有与 Facebook 相关的恶意代码): https://chrome.google.com/webstore/detail/baidu-dl/lflnkcmjnhfedgibjackiibmcdnnoadb

