/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

← → days · ↑ ↓ browse · Enter similar · o open

Google pulls five Chrome Web Store extensions posing as ad blockers that had scripts enabling them to hijack browsers; extensions had 20M+ users combined

Kate Conger / Gizmodo :

Gizmodo Kate Conger

Context & Ripple Effects

This is not an isolated incident but a recurrence: back in 2015 Google disabled 192 deceptive extensions after finding 5% of its visitors had ad injectors installed, and the same cat-and-mouse has continued since. The five fake ad blockers pulled here add a sharper twist — beyond injecting ads, they carried scripts capable of hijacking browsers outright, while masquerading as tools users install precisely to block ads.

First-order effects

  • More than 20 million users who installed these extensions believing they were blocking ads were instead exposed to browser hijacking scripts until Google's removal.

Second-order effects

  • Advertisers and search engines bear the downstream cost when hijacked browsers distort traffic and ad delivery, echoing the injected-ads problem seen in later extension clusters.

Third-order effects

The trend: Chrome Web Store security is settling into a cycle where researcher discoveries trigger mass takedowns of malicious extensions years apart, leaving millions of users exposed between purges.