Hackers Use Fake Chrome Update Pop-Ups to Spread Malware via Browser Extensions
A new sophisticated cyber scam is targeting users of Google Chrome and other browsers like Brave and Opera by displaying fake update pop-ups that urge users to install a "critical" browser update. Clicking the prompt downloads malicious files with .vbs or .exe extensions, which are difficult for leading antivirus software to detect. The threat does not come from the browser itself but from compromised browser extensions that silently fetch malicious code from external servers and display deceptive update alerts within the browsing window.
Hackers have been acquiring legitimate browser extensions or hijacking developer accounts to push silent updates that bypass official security checks. One notably affected extension is "Enable Right Click & Copy Smart Unlock + OCR," which has over 70,000 downloads and a high user rating. Users are advised not to click on suspicious update links or run downloaded files. Instead, they should verify updates through the browser’s built-in settings menu and disable recently added or small utility extensions one by one until the pop-ups stop.
Security experts emphasize that modern browsers update automatically or via internal settings and never require users to download external files to continue browsing safely. Remaining vigilant and cautious about unsolicited update prompts is the best defense against this emerging malware threat.