每日更新的恶意浏览器扩展数据库
Show HN: Daily-updated database of malicious browser extensions

原始链接: https://github.com/toborrm9/malicious_extension_sentry

## 恶意扩展哨兵:保护您的浏览器 该项目提供一个定期更新的、开源的数据库,其中包含从 Chrome 网上商店移除的恶意 Chrome、Edge 和 Chromium 扩展程序。 鉴于缺乏全面的公共资源,创建者构建了一个自动化系统来收集和汇总来自各种安全来源的移除数据。 用户可以使用一个简单的 Python 脚本(可在 GitHub 上找到:[https://github.com/toborrm9/malicious_extension_sentry](https://github.com/toborrm9/malicious_extension_sentry))快速扫描他们已安装的扩展程序。 该扫描器跨平台,除了 Python 3 之外无需额外安装,并且在本地运行以保护隐私。 该数据库包括扩展 ID、名称和添加日期,提供 Markdown 和 CSV 格式。 它专为安全研究、扩展程序审查和构建保护工具而设计。 虽然数据经过精心维护,但建议用户在移除扩展程序之前验证结果。 欢迎通过 GitHub issue 提交新的恶意扩展程序信息。

一位 Hacker News 的开发者创建并分享了一个公开的、每日更新的数据库,其中包含超过 1000 个恶意 Chrome 和 Edge 浏览器扩展程序。该系统会自动跟踪从 Chrome 网上商店移除的扩展程序,并扫描安全博客以识别威胁,提供扩展程序 ID、名称和移除日期。 数据托管在 GitHub 上,旨在免费用于研究或安全工具。该开发者还在构建本地扫描工具(GUI 和 CLI)来检查已安装的扩展程序是否在数据库中——重要的是,这些工具在*不*将任何用户数据发送到外部的情况下运行。 一位评论员强调了本地、无状态验证的重要性,以防止验证过程本身成为安全风险,开发者证实这一点已经内置到系统设计中。未来的开发包括显示关键的扩展程序权限,以帮助用户做出决策。
相关文章

原文

Buy Me A Coffee
Last Updated Total Extensions

An automatically updated database of malicious Chrome extensions removed from the Chrome Web Store.


⚡ Check YOUR extensions right now!

One-line install & scan:

curl -O https://raw.githubusercontent.com/toborrm9/malicious_extension_sentry/main/malext.py && python3 malext.py

Or download and run:

# Download
curl -O https://raw.githubusercontent.com/toborrm9/malicious_extension_sentry/main/malext.py

# Run
python3 malext.py
  • Cross-platform - Windows, macOS, Linux
  • 🔍 Instant scan - Chrome, Edge, Chromium
  • 🌐 Auto-updates - Downloads latest database
  • 🛡️ Zero install - Just Python 3
  • 🔒 Privacy-first - 100% local scanning
Click to see example scan results

When safe:

╔════════════════════════════════════════════════════════════════════╗
║        ███╗   ███╗ █████╗ ██╗     ███████╗██╗  ██╗████████╗      ║
║        ████╗ ████║██╔══██╗██║     ██╔════╝╚██╗██╔╝╚══██╔══╝      ║
║        ██╔████╔██║███████║██║     █████╗   ╚███╔╝    ██║         ║
║        ██║╚██╔╝██║██╔══██║██║     ██╔══╝   ██╔██╗    ██║         ║
║        ██║ ╚═╝ ██║██║  ██║███████╗███████╗██╔╝ ██╗   ██║         ║
║        ╚═╝     ╚═╝╚═╝  ╚═╝╚══════╝╚══════╝╚═╝  ╚═╝   ╚═╝         ║
║              🛡️  Malicious Extension Scanner v1.0 🛡️              ║
║                    Created by: @toborrm9                          ║
╚════════════════════════════════════════════════════════════════════╝

💻 Detected OS: macOS
✅ Loaded 437 known malicious extension IDs
✅ Found 12 extensions (Chrome: 8, Edge: 4)

======================================================================
📊 SCAN RESULTS
======================================================================

✅ GOOD NEWS: No malicious extensions detected!
   All 12 extensions are clear.

When threats found:

⚠️  WARNING: 1 MALICIOUS EXTENSION(S) DETECTED!

🔴 REMOVE THESE IMMEDIATELY:
----------------------------------------------------------------------
❌ Malicious Extension
   ID: abcdefghijklmnopqrstuvwxyz123456
   Browser: Chrome (Default)

🛡️  HOW TO REMOVE:
   1. Open Chrome
   2. Go to chrome://extensions
   3. Find the extension and click 'Remove'

This repository maintains a current list of Chrome extensions that have been removed for malware, security violations, or malicious behavior. Since no regularly-updated public database exists for this purpose, this project automates the collection and aggregation of extension removals from multiple sources.

I created this project after searching for an updated list of malicious Chrome extensions and finding that most resources were outdated or incomplete. I'm committed to keeping this database alive and current through automated monitoring and community contributions.

📰 Recent Security News

The database is automatically updated by aggregating information from:

  • Chrome extension monitoring services
  • Security research blogs and publications
  • Threat intelligence feeds

🗃️ Database Structure

Each extension entry includes:

  • Extension ID - Unique Chrome Web Store identifier
  • Name - Extension name
  • Date Added - When the extension was added to this database

This database is intended for:

  • Security research
  • Extension vetting and analysis
  • Building protective tools
  • Threat intelligence

Data is available in multiple formats:

  • .md - Markdown table
  • .csv - Comma-separated values

If you're aware of a malicious extension that should be included, please open an issue with:

  • Extension ID
  • Evidence or source of malicious behavior
  • Date of discovery/removal

This database is provided for research and educational purposes. The information is aggregated from public sources and automated monitoring. While efforts are made to ensure accuracy, false positives may occur. Always verify findings before taking action.


Made with ❤️ for browser security

Found this useful? Star the repo and share with others!

联系我们 contact @ memedata.com