A recent investigation has uncovered 737 free VPN and proxy extensions on the Chrome Web Store that primarily target Russian-speaking users, with the goal of intercepting browser traffic and rerouting it through a proxy infrastructure. These extensions, which have collectively amassed over 75,000 installations, were found to be masquerading under 40 different developer accounts, raising significant concerns regarding the integrity of user data and online privacy. Of the extensions analyzed, 274 were identified as impersonating legitimate services, thereby exacerbating the risks associated with their use.
For businesses, the presence of these malicious extensions underscores the critical importance of maintaining robust cybersecurity practices. Organizations must educate employees about the risks associated with third-party browser extensions and implement policies that limit or monitor their use. This incident highlights the intersection of cybersecurity and AI, as both fields increasingly focus on identifying and mitigating threats posed by sophisticated online scams. For businesses relying on online tools and services, this serves as a stark reminder of the vulnerabilities that can arise from seemingly harmless applications, making it essential to prioritize secure browsing environments and rigorous vetting of software tools.
---
*Originally reported by [The Hacker News](https://thehackernews.com/2026/08/737-chrome-vpn-extensions-caught.html)*