CRX aminer
Extension icon

2FA Authenticator Guard

Version 2.6.8 View in Chrome Web Store

Last scanned: about 6 hours ago

Extension Details

Developer: https://2faauthenticatorguard.leducgiachoang.com/
Rating: 3.6 ★ (19 ratings)
Users: 4,000

Context-Aware Verdict

CRITICAL
Overall Risk
Trust Factors:

The extension has very limited trust indicators with only 4,000 users and a below-average rating of 3.6 stars from just 19 reviews. The developer website appears to be a personal domain rather than an established company, which raises questions about accountability and long-term support. The low user adoption and poor rating suggest potential issues with functionality or user experience.

Concerns:

The permission set is extremely excessive for a 2FA authenticator application. The combination of identity, tabs, videoCapture, and broad host permissions (<all_urls>) creates a dangerous attack surface. A legitimate 2FA tool should not need access to all websites, video capture capabilities, or identity information. The ability to inject content scripts into any website means this extension could potentially steal login credentials, session tokens, or other sensitive data from any site you visit. The videoCapture permission is particularly concerning as it could enable unauthorized recording.

Recommendations:

Do not install this extension. The permission requirements are completely unjustified for a 2FA authenticator and present significant security risks. Instead, use established 2FA applications like Google Authenticator, Authy, or Microsoft Authenticator. If you must use a browser-based 2FA solution, choose one from a reputable developer with appropriate, limited permissions. The current permission set suggests this extension could function as spyware or credential harvesting malware rather than a legitimate security tool.

Findings

HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: identity
This extension has the identity permission. Can access your identity information. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Medium-Risk Permission: unlimitedStorage
This extension has the unlimitedStorage permission. Can store unlimited data locally.