Malicious Chrome Update Pop-Ups Target Users via Compromised Extensions

Malicious Chrome Update Pop-Ups Target Users via Compromised Extensions

First seen 13 Aug 2026, 17:50 UTC AndroidauthorityLifehacker 89% similarity 66.0

Article Content

Browse articles
ThreatCluster

A new malware campaign is targeting users of Google Chrome and other Chromium-based browsers through deceptive pop-ups claiming critical updates are needed. Victims are tricked into downloading harmful .vbs or .exe scripts instead of legitimate updates. The malicious activity is linked to compromised browser extensions, notably 'Enable Right Click & Copy Smart Unlock + OCR,' which has over 70,000 downloads. Users on Brave and Opera have reported similar pop-ups, indicating a broader impact across multiple platforms. Traditional antivirus software often fails to detect these threats, as the browser itself remains uninfected. Users are advised to audit their extensions and avoid clicking on suspicious pop-ups. The situation is ongoing, with no immediate resolution reported.

Key Points: • Malware disguised as Chrome updates is spreading through compromised extensions. • Affected extensions include 'Enable Right Click & Copy Smart Unlock + OCR' with 70,000 downloads. • Users on Chromium-based browsers like Brave and Opera are also experiencing similar threats.

ThreatCluster AI How this analysis works

Timeline

2026-08-13
Malware campaign reported
Users are targeted by pop-ups claiming critical updates are needed, leading to malware downloads.
Android Authority
2026-08-13
Affected extensions identified
Compromised extensions like 'Enable Right Click & Copy Smart Unlock + OCR' are linked to the malware distribution.
Lifehacker
Recent
User reports increase
An increasing number of users report seeing aggressive pop-ups across multiple browsers.
Android Authority

Community

Browse all →

Tracked Entities in This Story