
highMalware
Malicious Twitch Browser Extension Compromises OAuth Tokens of Nearly 31,000 Users
A malicious browser extension distributed across the Google Chrome Web Store and Mozilla Firefox Add-Ons store has been identified as harvesting OAuth tokens from approximately 31,000 Twitch users. The extension, named 'Twitch Enhanced Viewer | JeetBot', redirects stolen credentials to proxy servers operated by a Russian commercial bot service. The discovery highlights the risks associated with cross-store distribution and the potential for credential theft in browser extension ecosystems.
The Hacker News1 min read