CRX aminer
Extension icon

Malwarebytes Browser Guard Beta

Version 3.0.23 View in Chrome Web Store

Last scanned: 17 days ago | force re-scan

Extension Details

Rating: 3.2 ★ (18 ratings)
Users: 10,000

Context-Aware Verdict

MEDIUM
Risk Level
Trust Factors:
- The extension is published by the reputable cybersecurity company Malwarebytes, which adds some trust.
- It has a relatively high number of users (10,000), suggesting some level of popularity and trust from the user community.
- However, the extension is still in beta, which could indicate potential issues or instability.
Concerns:
- The extension requests several high-risk permissions, including downloads, tabs, webRequest, and the ability to inject content scripts into any website. These permissions could potentially be abused for malicious purposes, such as compromising security, privacy, or modifying website content.
- The extension also has broad host permissions (<all_urls>), allowing it to access any website, which could enable tracking or data theft.
- The "Critical" overall risk rating from the security findings is concerning, even though the extension is from a reputable company.
Recommendations:
- Exercise caution when using this extension, as it has broad permissions and the potential for misuse or security vulnerabilities.
- Consider running the extension in a separate browser profile or a sandboxed environment to isolate it from your main browsing activities.
- Monitor the extension's behavior and any updates or security advisories from Malwarebytes.
- If you don't require the extension's functionality, consider disabling or removing it until it exits the beta phase and potential security concerns are addressed.
- Provide feedback to Malwarebytes about the extension's permissions and any concerns you may have, as they may be able to address them in future updates.

Security Analysis

CRITICAL
Overall Risk
Based on 9 total findings, ranked without considering overall context, including 5 high-risk and 4 medium-risk findings.
HIGH
Broad Content Script Injection
This extension can inject scripts into any website. This means it could potentially read sensitive data, modify website content, or steal credentials.
HIGH
Broad Host Permissions
This extension has broad host permissions allowing it to access many or all websites. This could potentially be used to steal sensitive data or track browsing activity.
HIGH
High-Risk Permission: downloads
This extension has the downloads permission. Can download files and access download history. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: tabs
This extension has the tabs permission. Can access browser tab information and manipulate tabs. This could potentially be used maliciously to compromise security or privacy.
HIGH
High-Risk Permission: webRequest
This extension has the webRequest permission. Can intercept and modify web requests. This could potentially be used maliciously to compromise security or privacy.
MEDIUM
Medium-Risk Permission: activeTab
This extension has the activeTab permission. Can access the active tab when clicking the extension icon.
MEDIUM
Medium-Risk Permission: contextMenus
This extension has the contextMenus permission. Can add items to the context menu.
MEDIUM
Medium-Risk Permission: storage
This extension has the storage permission. Can store data locally.
MEDIUM
Medium-Risk Permission: unlimitedStorage
This extension has the unlimitedStorage permission. Can store unlimited data locally.