Malware · 91 giorni fa
Il punto debole non è il marchio AI finto in sé. È che un’estensione del browser può mettersi nel percorso della ricerca e vedere query e suggerimenti digitati prima che l’utente arrivi a un motore reale, lasciando il browser apparentemente normale.
Microsoft ha identificato una estensione Chromium malevola che impersonava Perplexity AI e usava le API MV3 per intercettare le ricerche e instradarle su infrastruttura controllata dall’attaccante, poi reindirizzare ai risultati legittimi. La ricerca veniva raccolta anche dalla barra degli indirizzi; Google l’ha rimossa dopo la segnalazione.
4 fonti che coprono questa storia
Fake Perplexity extension on Chrome Web Store tracked searches
A malicious extension in the Chrome Web Store is masquerading as the Perplexity AI answer engine, intercepting search traffic and collecting browsing information.
Malicious Chromium extension spoofs Perplexity AI to hijack browser searches
Researchers say attackers are extending AI-themed social engineering from phishing campaigns to browser extensions.
Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
Microsoft says a fake Perplexity Chrome extension logged searches, IPs, headers, and address bar input before redirecting users.
Chromium extension uses AI‑related branding to redirect browser search | Microsoft Security Blog
A malicious Chromium-based extension that spoofs the AI-powered answer engine Perplexity AI redirects browser search traffic using MV3 APIs and intermediary infrastructure.
Part of the PlainSec briefing for 2026-07-01