Loading...
M

MaliExt

Is your browser extension malicious?

This is a database of cryptocurrency-themed malicious browser extension, including 124 malicious extensions from now. We aim to maintain a comprehensive dataset covering all cryptocurrency-themed browser extensions in all kinds of browser platforms and cryptocurrencies. We will keep updating the dataset and everyone is welcome to report a malware and contribute to our dataset.

Github Learn more

Characterizing Cryptocurrency-themed Malicious browser Extensions

Due to the surging popularity of various cryptocurrencies in recent years, a large number of browser extensions are developed as the portals to access relevant services, such as cryptocurrency exchanges and wallets. This has stimulated a wild growth of the malicious cryptocurrency-themed extensions that have shown their capability of evading the stringent vetting processes of the extension stores. In this work, we conduct the first systematic study to characterize and identify this emerging type of malicious extensions. We monitor various extension distribution venues for 10 months, collecting around 3,000 cryptocurrency-themed extensions. Lever aging a hybrid analysis, we have identified 124 malicious extensions that belong to five categories. Our work unveils the status quo of the malicious cryptocurrency-themed extensions, and reveals their disguises and programmatic features that detection techniques can ely on. Our work should raise an alert to the extension users, and would encourage the extension store operators to enact dedicated countermeasures. To facilitate future research in this area, we have released all the identified malicious extensions.

10M+

Period monitored

124

Extensions collected

3000

Extensions related

About the Dataset

We conducted continuous monitoring from December 2020 to October 2021. We have gathered a dataset with a total size of 4.5GB con- taining 2,939 cryptocurrency-themed extensions. All identified 124 malicious extensions on their behaviors, we group them into five categories: phishing (26), mining (17), scam (44), adware (23), and gambling/porn (14).

Phishing

Mining

Scam

Aware

Gambling/Porn

Group Members
Paper

Characterizing Cryptocurrency-themed Malicious Browser Extensions

Under review