CRX aminer
Extension icon

Vortimo OSINT-tool

Version 5.2.1 View in Chrome Web Store

Last scanned: about 24 hours ago

Extension Details

Developer: Vortimo Pty Ltd
Rating: 4.2 ★ (9 ratings)
Users: 7,000

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension has a relatively small user base of 7,000 users with a decent rating of 4.2 stars, though based on only 9 reviews which is quite limited for assessment. The developer, Vortimo Pty Ltd, appears to be a legitimate company, and the extension's purpose as an OSINT (Open Source Intelligence) tool provides some context for its extensive permissions. However, the low number of reviews relative to users raises questions about user engagement and feedback.

Concerns:

The extension's permission set is extremely broad and powerful for an OSINT tool. The combination of webRequest interception, universal host permissions, and content script injection across all websites creates significant privacy and security risks. These permissions allow the extension to monitor, intercept, and potentially modify all web traffic and inject code into every website visited. The webNavigation permission enables comprehensive browsing tracking, while the tabs permission allows manipulation of browser tabs. This level of access far exceeds what most users would expect from a typical browser extension.

Recommendations:

Given the critical risk level, install this extension only in a completely separate Chrome profile dedicated solely to OSINT activities. Never use this profile for personal browsing, banking, or accessing sensitive accounts. Regularly audit the extension's behavior and consider whether the OSINT functionality truly requires such extensive permissions. Monitor network traffic when the extension is active and disable it when not actively conducting OSINT research.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webNavigation
This extension has the webNavigation permission. Can track your web navigation. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.