Skip to content
logo The magazine for digital lifestyle and entertainment
Browser Chrome CoBi Google Internet News All topics
Delete Quickly!

108 Harmful Chrome Extensions Discovered

Woman in Front of Laptop
Security Researchers Warn of Extensions That Can Access Telegram Data and Google Accounts Photo: Getty Images/Westend61
Share article

April 16, 2026, 7:53 am | Read time: 2 minutes

Browser extensions enhance functionality and simplify daily online activities. However, they pose risks if not trustworthy. A recent report from the cybersecurity firm Socket highlights how significant this danger can be. Security researchers have identified 108 extensions for Google Chrome that can collect and misuse data in the background.

Common Origin Behind Multiple Providers

The examined extensions appear under various names and categories. They are distributed by five different publishers. Nevertheless, Socket sees evidence that all offerings originate from the same source. The exact entity behind them is unknown. However, the report indicates that the source code contains hints of a Russian-speaking origin.

All extensions use the same infrastructure to transmit data. The main goal is to collect user data and utilize Google Chrome for advertising and executing malicious software. The extensions have been downloaded about 20,000 times in total. Although this number is relatively low, the spread can quickly increase. The security firm provides a complete list on its website. Known extensions include “Telegram Multi-Account,” “Web Client for Telegram – Teleside,” and “Formula Rush Racing Game.”

Also of interest: Security Flaw in Windows 11! Researcher Releases Controversial Code

While the game collects data from the Google account, the Telegram extensions access communication data and can take it over. Other add-ons pose as tools for YouTube or TikTok, offer translations, or appear as small games.

Specific Risks and Recommended Actions

The extensions are distributed under the names Yana Project, GameGen, SideGames, Rodeo Games, and InterAlt. Despite different names, they all reportedly lead to the same source. The programs can enable identity theft, read Telegram chats, or even influence them.

Additionally, 54 of the extensions contain a universal backdoor that allows for various abuses. Socket therefore recommends removing all affected extensions immediately. Users should also log out of all Telegram sessions, both in the browser and the app.

This article is a machine translation of the original German version of TECHBOOK and has been reviewed for accuracy and quality by a native speaker. For feedback, please contact us at info@techbook.de.

You have successfully withdrawn your consent to the processing of personal data through tracking and advertising when using this website. You can now consent to data processing again or object to legitimate interests.