Close Menu
    Main Menu
    • Home
    • News
    • Tech
    • Robotics
    • ML & Research
    • AI
    • Digital Transformation
    • AI Ethics & Regulation
    • Thought Leadership in AI

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Russian hackers accused of assault on Poland electrical energy grid

    January 26, 2026

    Palantir Defends Work With ICE to Workers Following Killing of Alex Pretti

    January 26, 2026

    The Workers Who Quietly Maintain Groups Collectively

    January 26, 2026
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Facebook X (Twitter) Instagram
    UK Tech InsiderUK Tech Insider
    Home»AI Ethics & Regulation»131 Malicious Chrome Extensions Found Focusing on WhatsApp Customers – GBHackers Safety
    AI Ethics & Regulation

    131 Malicious Chrome Extensions Found Focusing on WhatsApp Customers – GBHackers Safety

    Declan MurphyBy Declan MurphyOctober 20, 2025No Comments3 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Reddit
    131 Malicious Chrome Extensions Found Focusing on WhatsApp Customers – GBHackers Safety
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link


    A brand new wave of spamware focusing on WhatsApp Net customers has emerged, because the Socket Risk Analysis Workforce revealed the invention of 131 malicious Chrome extensions actively flooding the Chrome Net Retailer.

    These extensions are usually not standard malware, however perform as high-risk automation instruments, systematically violating platform insurance policies to facilitate large-scale spam campaigns, primarily focusing on Brazilian customers.

    Reseller Mannequin Creates Clone Flood

    On the core of this operation lies a single WhatsApp Net automation device, cloned and rebranded into 131 distinct extensions. Regardless of sporting distinctive names, logos, and advertising and marketing websites, all clones share the identical codebase, design patterns, and backend infrastructure.

    Branding variations masks the underlying actuality: over 80 of those extensions sport the label “WL Extensão” or a near-identical variant, however all have been revealed by simply two developer accounts linked to the Brazilian firm DBX Tecnologia and its affiliate, Grupo OPT.

    Key traits of the operation embrace:

    • 131 rebranded clones of a single WhatsApp Net automation device.
    • All extensions share equivalent codebase and infrastructure.
    • Printed by means of solely two developer accounts: suporte@grupoopt.com.br and kaio.feitosa@grupoopt.com.br.
    • Extensions branded below WL Extensão and WLExtensao labels throughout 83 listings.
    • Marketing campaign has been working for at the very least 9 months with common updates by means of 2025.

    This construction mimics a franchise enterprise mannequin. For a licensing price, resellers obtain a customizable construct—brand, identify, and interface tweaks included however the backend and core code stay unchanged and managed centrally.

    DBX Tecnologia advertises the enterprise as a profitable “white-label partnership,” promising recurring income streams and wholesome margins for resellers.

    The consequence is a multi-pronged operation, with resellers publishing near-identical instruments and flooding the market by means of advertising and marketing websites, YouTube, LinkedIn, and different channels.

    Bypassing Insurance policies and Focusing on Customers

    The aim of those extensions is obvious: automate bulk messaging by way of WhatsApp Net, together with scheduling and template options that evade WhatsApp’s anti-spam algorithms.

    The software program injects code straight into the WhatsApp Net web page, orchestrating unsolicited outreach in bulk, all whereas working alongside legit WhatsApp scripts.

    Promotion supplies and tutorials spotlight methods to tweak message intervals and supply patterns particularly to bypass detection techniques.

    Coverage violations and technical mechanisms:

    • Code injection straight into WhatsApp Net pages alongside legit scripts.
    • Automated bulk messaging and scheduling techniques designed to bypass anti-spam controls.
    • Violation of Chrome Net Retailer insurance policies prohibiting duplicate extensions and spam.
    • Circumvention of WhatsApp’s Enterprise Messaging coverage requiring specific opt-in.
    • Advertising supplies falsely declare Chrome Net Retailer presence ensures safety audits.

    Claims that Chrome Net Retailer presence ensures rigorous code audits or privateness compliance are deceptive.

    Precise abuse of the Chrome Net Retailer’s insurance policies is central to the operation: Google explicitly forbids duplicate extensions, mass spam, and sending messages with out consumer consent.

    In the meantime, WhatsApp’s Enterprise Messaging coverage calls for specific opt-in and speedy honoring of block requests — necessities systematically skirted by this marketing campaign.

    Broad Affect, Ongoing Risk

    Collectively, these 131 extensions account for at the very least 20,905 lively customers. Socket’s AI safety evaluation flagged examples like “Arrange-C” for direct coverage violations. At time of publication, all extensions stay stay, although takedown requests have been submitted.

    For customers and organizations, this marketing campaign underscores the pressing want for safety controls: restrict Chrome extension installations to trusted sources, use stock and permission evaluation instruments, and carefully monitor for suspicious behaviors.

    With bulk messaging spam on the rise, strong countermeasures are a should for anybody counting on WhatsApp for enterprise or private communication.

    Comply with us on Google Information, LinkedIn, and X to Get On the spot Updates and Set GBH as a Most popular Supply in Google.

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Declan Murphy
    • Website

    Related Posts

    Russian hackers accused of assault on Poland electrical energy grid

    January 26, 2026

    Nike Knowledge Breach Claims Floor as WorldLeaks Leaks 1.4TB of Recordsdata On-line – Hackread – Cybersecurity Information, Knowledge Breaches, AI, and Extra

    January 26, 2026

    Konni Hackers Deploy AI-Generated PowerShell Backdoor Towards Blockchain Builders

    January 26, 2026
    Top Posts

    Evaluating the Finest AI Video Mills for Social Media

    April 18, 2025

    Utilizing AI To Repair The Innovation Drawback: The Three Step Resolution

    April 18, 2025

    Midjourney V7: Quicker, smarter, extra reasonable

    April 18, 2025

    Meta resumes AI coaching utilizing EU person knowledge

    April 18, 2025
    Don't Miss

    Russian hackers accused of assault on Poland electrical energy grid

    By Declan MurphyJanuary 26, 2026

    On Dec. 29 and 30, the Polish electrical energy grid was subjected to a cyberattack…

    Palantir Defends Work With ICE to Workers Following Killing of Alex Pretti

    January 26, 2026

    The Workers Who Quietly Maintain Groups Collectively

    January 26, 2026

    Nike Knowledge Breach Claims Floor as WorldLeaks Leaks 1.4TB of Recordsdata On-line – Hackread – Cybersecurity Information, Knowledge Breaches, AI, and Extra

    January 26, 2026
    Stay In Touch
    • Facebook
    • Twitter
    • Pinterest
    • Instagram
    • YouTube
    • Vimeo

    Subscribe to Updates

    Get the latest creative news from SmartMag about art & design.

    UK Tech Insider
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms Of Service
    • Our Authors
    © 2026 UK Tech Insider. All rights reserved by UK Tech Insider.

    Type above and press Enter to search. Press Esc to cancel.