Close Menu
    What's Hot

    New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis

    The Ebola Outbreak’s Central Mystery: Where Did This Virus Come From?

    Inglewood wins a legal victory over its most famous building

    Facebook X (Twitter) Instagram
    Trending
    • New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis
    • The Ebola Outbreak’s Central Mystery: Where Did This Virus Come From?
    • Inglewood wins a legal victory over its most famous building
    • Venezuela Live Updates: Rescuers Search for Survivors After Worst Quakes in Decades
    • On the ground and online, Venezuelans desperately search for missing relatives.
    • The Aerogarden I Recommend to Everyone Is Just $83 Right Now, a 63 Percent Discount
    • Micron: Avoid Buying The Peak, You Might Thank Me Later (NASDAQ:MU)
    • Alexia Putellas: Former Barcelona midfielder decides to join London City Lionesses on a free transfer | Football News
    interluknewsinterluknews
    • Home
    • Business
      • Corporate News
      • Industry Insights
      • Startups & Entrepreneurship
      • Technology & Innovation
    • Economy
      • Economic Policy
      • Financial Analysis
      • Inflation & Interest Rates
      • Trade & Markets
    • Global
      • Conflicts & Security
      • Diplomacy
      • Global Trends
      • International Affairs
    • Lifestyle
      • Fashion
      • Food & Dining
      • Personal Development
      • Travel
    • Opinion
      • Columns
      • Editorials
      • Expert Opinions
      • Reader Voices
    • More
      • Politics
        • Elections
        • Government & Policy
        • International Relations
        • Political Analysis
      • Sports
        • Cricket
        • Football / Soccer
        • International Sports
        • Local Sports
      • Technology
        • Artificial Intelligence
        • Cybersecurity
        • Gadgets & Reviews
        • Tech News
      • South Africa News
    Facebook X (Twitter) Instagram
    interluknewsinterluknews
    Cybersecurity

    Chrome Ad Blocker with 10M+ Installs Found with Dormant Script Injection Capability

    adminBy adminJune 25, 2026No Comments2 Mins Read
    Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
    Chrome Ad Blocker with 10M+ Installs Found with Dormant Script Injection Capability
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Chrome Ad Blocker with 10M+ Installs Found with Dormant Script Injection Capability

    An analysis of a popular Google Chrome ad block extension for YouTube has uncovered the ability to execute arbitrary JavaScript code.

    According to Island, the extension, named Adblock for YouTube (ID: cmedhionkhpnakcndndgjdbohmhepckk), has more than 10 million installs and carries a Featured badge on the Chrome Web Store.

    The extension description states that it allows users to prevent web page elements like ads, including preroll ads, from being displayed on the video sharing platform, as well as on external sites that load YouTube. While the add-on offers the promised functionality, it also features capabilities to run arbitrary JavaScript code.

    “It also contains the architectural ingredients for arbitrary JavaScript execution on any website, activated by a single server-side configuration change, without an extension update, without a store review, and without any visible sign that something has changed,” researchers Oleg Zaytsev and Shachar Gritzman said in a report shared with The Hacker News.

    Cybersecurity

    “In practical terms, that could mean reading pages, stealing data, and acting as the user inside personal accounts, work apps, admin panels, and other sensitive browser sessions.”

    It’s worth emphasizing here that there is no evidence malicious payload has been distributed to users in this manner, but the mere presence of the capability, coupled with ties to other ad-blocking extensions that have since been removed from the storefront for malware, raises privacy and security risks, Island added.

    The list of related extensions that have been taken down is listed below –

    • Adblock for Chrome (ID: onomjaelhagjjojbkcafidnepbfkpnee)
    • Adblock for You (ID: ogcaehilgakehloljjmajoempaflmdci)
    • AdBlock Suite (ID: gekoepiplklhniacchbbgbhilidiojmb)

    Adblock for YouTube has been on the Chrome Web Store since 2014, starting off as a basic YouTube ad blocker before it changed ownership four years later. Early iterations of the extension were found to ship with an ad-injection software development kit (SDK) named Unistream SDK, although it was removed in June 2024.

    What’s been constant is the presence of remote-controlled script injection paths since February 2025, opening the door to the creation of arbitrary “

    10M Blocker capability Chrome Dormant Injection Installs script
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous ArticleShortage of Chemotherapy Drugs Brings Rationing Fears for Cancer Patients
    Next Article Vote for the 2026 ESPYS winners
    admin
    • Website

    Related Posts

    New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis

    June 25, 2026

    Smart TV Proxyware, 24-Year curl Bug, AI Crime Forums + 13 More Stories

    June 25, 2026

    Richard Bejtlich on the Case for NDR

    June 25, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis

    The Ebola Outbreak’s Central Mystery: Where Did This Virus Come From?

    Inglewood wins a legal victory over its most famous building

    Venezuela Live Updates: Rescuers Search for Survivors After Worst Quakes in Decades

    Latest Posts

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Advertisement
    Demo

    We are a digital news platform delivering timely, accurate, and insightful coverage of politics, global affairs, business, economy, sports, and more. Our mission is to keep readers informed with reliable news, clear analysis, and stories that truly matter.
    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.

    Powered by
    ...
    ►
    Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
    None
    ►
    Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
    None
    ►
    Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
    None
    ►
    Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
    None
    ►
    Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    None
    Powered by