MIT TRACE

MIT CTL Logo
Back to Main Dashboard

Cyberhaven Chrome extension compromise distributes malicious trusted update

A phishing attack on December 24, 2024 compromised a Cyberhaven employee's Chrome Web Store access, allowing an attacker to publish malicious version 24.10.4 of Cyberhaven's legitimate browser extension. The trusted update channel exposed downstream corporate users to theft of authenticated sessions and cookies until the malicious version was removed and replaced. Public reporting characterized the event as part of a broader campaign against Chrome extension developers; no specific actor was confirmed.

72

Estimated severity

72 / 100

93

Source reliability

93 / 100

Approximate Date

24/12/2024

Targeted Company

CYBERHAVEN

Targeted Company Supply Chain Impact

  1. Distribution & Fulfillment

  2. Procurement & Sourcing

  3. Production & Manufacturing

  4. Sales (Retail & Ecommerce)

  5. Warehousing

  6. Service Delivery

  7. Unrecognized Impact

Supply Chain Relations

No information

Geographic Impact

Country Targeted Company

United States

USA

Other Affected Countries

No other affected countries reported

Target country

United States

Affected countries

No information

Impacted regions

No information

Operational Impact

Duration

1.25 days

Financial impact (USD M)

No information

Impact types

Supply chain data integrity impact

Affected sectors

Technology & IT Services

Affected departments

Information Technology

Attack Profile

Attack types

PhishingAccount takeoverSoftware supply chain compromise

Attributed threat actors

No information

Sources

Please rotate your phone

MIT TRACE is optimized for landscape orientation on mobile.