I'm going to FOSDEM, the Free and Open Source Software Developers' European Meeting EuroTrashSecurity Website

Malicious Firefox Add-on Steals Passwords

It was reported by the French version of The Inquirer: it seems that a new malware is spread over the Internet presented like a false Firefox add-on!

Discovered by BitDefender, the anti-virus editor, the malware was named Trojan.PWS.ChromeInject.A. It does not spread by itself and his installed in the local Firefox plugins directory by another malware.

Then, every time, Firefox is started, the malicious code is executed and sniff passwords from major e-Banking websites (like bankofamerica.com, chase.com, halifax-online.co.uk, wachovia.com, paypal.com, e-gold.com, …). Grabbed passwords are send to a Russian IP address.

I didn’t find more relevant information on the BitDefender website…

1 comment to Malicious Firefox Add-on Steals Passwords

Leave a Reply

 

 

 

You can use these HTML tags

<a href="" title=""> <abbr title=""> <acronym title=""> <b> <blockquote cite=""> <cite> <code> <del datetime=""> <em> <i> <q cite=""> <strike> <strong>

IMPORTANT! To be able to proceed, you need to solve the following simple math (so we know that you are a human) :-)

What's the sum of 13 and 2 ?
Please leave these two fields as-is: