737 Malicious Chrome VPN and Proxy Extensions Intercepting Browser Traffic Discovered
Over 75,000 installs reported; extensions route traffic through attacker-controlled proxies targeting Russian-speaking users

Key Takeaways
- 737 malicious VPN and proxy extensions identified in the Chrome Web Store.
- Over 75,000 total installs reported across the affected extensions.
- Extensions primarily target Russian-speaking users seeking access to blocked services.
- 274 extensions impersonate 66 legitimate VPN/proxy services.
Related Security News

Times Car Confirms Data Breach Affecting 6.6 Million User Accounts
Times Car, a Japanese car-sharing service, has confirmed a data breach compromising approximately 6.6 million user accounts. The incident was disclosed late last week, with the exact attack vector and nature of exposed personal information yet to be fully specified. Authorities and the company are reportedly investigating the breach.

Star Blizzard Campaign Targets 100+ Organizations with Fake Event Invitations
Microsoft reports that the Russian state-sponsored threat actor Star Blizzard has been conducting a sustained campaign since January 2026, using fake event invitations to trick targets into installing a backdoor on Windows computers. The operation has affected more than 100 organizations, primarily in the U.S. and U.K., with victims tied to Ukraine. At least one infection has been confirmed, though the full extent of breaches and data exfiltration remains unverified.



