Skip to content
Over 4 Million Browsers Infected by China-Based Spyware Campaign

Over 4 Million Browsers Infected by China-Based Spyware Campaign

First seen 10 Dec 2025, 07:47 UTC • •

Article Content

Browse articles
ThreatCluster AI
ThreatCluster •March 12, 2026 at 13:27 UTC

A China-based threat actor known as 'ShadyPanda' has infected over 4 million browsers through malicious browser extensions. These extensions, marketed as legitimate applications like 'WeTab', were distributed to users of Google Chrome and Microsoft Edge, leading to widespread malware deployment.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 212d ago How this analysis works

More articles in this cluster (2)