Palo Alto, California, 29th July, 2025/CyberNewsWire/--Ngaphandle kokusetyenziswa kwe-browser extensions, ininzi lwezimveliso kunye neengqungquthela zihlanganisa i-etiquette ezifana ne-"Verified" kunye ne-"Chrome Featured" ezinikezelwe yi-stores ye-extension njenge-indicator yokhuseleko. I-Geco Colorpick esitsha ibonise ukuba i-certifications ze-"Verified" zibonakalisa i-18 i-extensions ezijoliswayo ezidibanisa i-spyware kwi-2.3M abasebenzisi. Iingcali zibonakalisa isizathu se-technological esekelwe kwimfuneko ye-Browser DevTools, ebonisa isiphumo se-architectural e-Browser DevTools eyenza abathengisi be-browser kunye neebhizinisi ukwenza i-analysis ye-security efanelekileyo eyenza kwiimveliso ezininzi. Ukucinga Ukucinga "Ngaphandle kwimveliso ezininzi ze-extension kunye neengxelo zithunyelwe ngosuku, i-browser vendors ayikwazi ukucacisa kunye nokuthintela umgangatho we-extension ngexesha lokugqibela," wathi Nishant Sharma, Head of Security Research ku-SquareX, "Yinto ngenxa yokuba i-DevTools ezikhoyo yenzelwe ukucacisa iiphepha zewebhu. I-Extensions ziquka ama-beasts ezincinane ezinokufanelekileyo, zokusebenza kwiifayile ezininzi kunye ne" i-superpowers" eziza kufumaneka kalula ukucaciswa nge-Browser DevTool telemetry." "Ngaphandle kwimveliso ezininzi ze-extension kunye neengxelo zithunyelwe ngosuku, i-browser vendors ayikwazi ukucacisa kunye nokuthintela umgangatho we-extension ngexesha lokugqibela," wathi Nishant Sharma, Head of Security Research ku-SquareX, "Yinto ngenxa yokuba i-DevTools ezikhoyo yenzelwe ukucacisa iiphepha zewebhu. I-Extensions ziquka ama-beasts ezincinane ezinokufanelekileyo, zokusebenza kwiifayile ezininzi kunye ne" i-superpowers" eziza kufumaneka kalula ukucaciswa nge-Browser DevTool telemetry." Ngokutsho, nangona abavelisi be-browser abafutshane ngamanani elikhulu le-extension submission requests, iingcaciso ze-Architectural ye-Browser DevTools namhlanje uyavumela i-extensions ezininzi ze-malign to pass DevTool-based security inspections. I-Browser DevTools yasungulwa ekupheleni kwe-2000s, ngexesha elide ekuqaleni kwe-adoption ye-extension ebonakalayo. Le zixhobo ziye ziye ziye ziye ziye ziye ziye ziye zithunyelwe kubasebenzisi kunye nabasebenzi bewebhu ukuba zithunyele iindawo zewebhu kunye nezixhobo zewebhu. Nangona kunjalo, izixhobo zewebhu zinezinto ezizodwa ukuba, phakathi kwezinye izinto, ukuguqulwa, ukuthatha i-screenshots kunye ne-inject scripts kwiifayile zewebhu ezininzi, engabonakali ukuyilela kwaye zithunyelwe ngempumelelo yi-Browser DevTools. Ngokwesibonelo, isixhobo ingaba ukuyifumana isicelo sewebhu nge-web page nge-in Ukucaciswa kwi , Iingcebisi zeSquareX zibonisa indlela entsha esebenzisa i-combination ye-browser esebenzayo kunye ne-Browser AI Agents ukuxhaswa le gap. I-browser esebenzayo ibonise i-telemetry ebalulekileyo ebonakalayo ukufumana isebenziswano se-extension, kwaye i-Browser AI Agent ibonise iindidi ezahlukahlukeneyo ze-user persons ukuze zihlale izilwanyana ezahlukeneyo ze-extension kwi-runtime yokulawula kunye ne-analytics yokhuseleko. Oku kuthetha kuphela ukuxhaswa kwe-extension, kodwa nangokufumaneka izilwanyana ezahlukahlukeneyo ze-extension "ukukhuselekileyo" ezidlulileyo kuphela ngexesha, imisebenzi ye-user ethile okanye izilwanyana ze-device. I-E I-Technical Blog I-Technical Blog Ukubonisa izixazululo ze-Architectural ye-Browser DevTools ibonise isixazululo se-security esisiseko elidlulileyo elidlulayo ukuba iimiliyoni abasebenzisi zithintshwe. Njengoko izixazululo ze-browser ziye ziye zihlanganisa isiseko se-workflow ye-enterprise, kubalulekile ukuba iimveliso ziye ziye ziye ziye ziye ziye zithunyelwe ngokukhawuleza ukuxhaswa kwe-extension security. Kubaluleke kakhulu ukuba abathengisi be-browser, iimveliso kunye nabathengisi be-security ziye zihlanganisa ngokufanelekileyo ekuphenduleni kwizinto ezininzi ezintsha. Okwangoku, Ukubonelela Ngo-Agasti. I-Audit ibandakanya ukuqhuba i-audit epheleleyo yeengxaki ze-Extension ezisetyenziswa kwindawo ze-3 ze-SquareX Extension Analysis Framework - i-metadata analysis, i-static code analysis kunye ne-dynamic analysis kunye ne-Extension Monitoring Sandbox - enika i-analysis epheleleyo ye-extension risk exposure ye-organization kunye ne-risk score yeenkcukacha zokusetyenziswa. SquareX I-audit ye-Enterprise-wide extension ye-Enterprise-wide extension Ukucinga I-audit ye-Enterprise-wide extension ye-Enterprise-wide extension About SquareX Ukucinga Ukucinga isisombululo se-browser iye yenza i-browser yeenkcukacha kwizixhobo ezininzi kwi-browser ye-enterprise-grade. I-SquareX ye-Industry-first Browser Detection and Response (BDR) isisombululo ivumela iinkonzo ukukhuthaza, ukunciphisa, kunye nokuthintela iingxaki ze-client-side web attacks kuquka iingxaki ze-browser ezifanelekileyo, i-spearphishing ephakamileyo, i-browser-native ransomware, i-GenAI data loss prevention, kunye nokunye. Kwakhona SquareX Kwakhona SquareX Ngokungafani neengxaki ze-security kunye neengxaki ze-Enterprise, i-SquareX ifumaneka ngokugqithisileyo kunye neengxaki ze-Consumer ezidlulileyo ze-user, ukunika ukhuseleko olungileyo ngaphandle kokuphindaphinda kwimveliso ye-user okanye i-productivity. Ngokunika ukubonisa kunye ne-control engapheliyo ngqo kwi-browser, i-SquareX ivumela abathengisi be-security ukunciphisa indawo yayo ye-attack, ukufumana i-intelligence esebenzayo, kunye nokukhusela i-cybersecurity yayo ye-enterprise kwi-vector ye-threat ye-browser. Zonke iinkcukacha ezininzi ziyafumaneka kwi: Qhagamshelana Qhagamshelana Ukucaciswa [1] http://www.bleepingcomputer.com/news/security/malicious-chrome-extensions-with-17m-installs-found-on-web-store/ http://www.bleepingcomputer.com/news/security/malicious-chrome-extensions-with-17m-installs-found-on-web-store/ http://www.bleepingcomputer.com/news/security/malicious-chrome-extensions-with-17m-installs-found-on-web-store/ Qhagamshelana Umlawuli we-PR U-Junice Liew Ukucinga umnikelo@sqrx.com Uluhlu lwabathunyelwe njenge-press release ye-Cybernewswire phantsi kwe-HackerNoon's Business Blogging Program. Uluhlu lwabathunyelwe njenge-press release ye-Cybernewswire phantsi kwe-HackerNoon's Business Blogging Program. iiprojekthi