Microsoft removes more than 100 malicious Edge extensions that hide malware in images and fonts



  • 119 malicious Edge extensions went undetected
  • They installed harmful code days after installing the extension
  • It's proof that static code review is no longer enough

Microsoft says it has removed 119 malicious extensions from the Edge Add-ons store after “proactive threat hunting” revealed a campaign called StegoAd.

As part of the program, the company also had to suspend more than 90 developer accounts associated with the questionable activity.

scroll to top