Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts
Microsoft's removal of 119 malicious Edge extensions has raised concerns about browser security.
Evidence dossier
Intelligence passport
Measured timeline
- Detected The first matching coverage entered the Archynetys cluster.
- Latest coverage observed Most recent article currently attached to this story cluster.
- Evidence threshold reached The story had enough independent coverage for an explanatory brief.
- Peak measured velocity The recorded velocity reached 4.
- Outcome review added Archynetys revisited the signal after coverage cooled.
Source diversity sample: Redmondmag.com · Malwarebytes · TipRanks · Security Affairs · Risky Business Newsletters · The Hacker News.
How this dossier is built: methodology · AI policy · corrections.
📍 Aftermath
Microsoft removed 119 Edge extensions that used images and fonts to hide malware, disrupt the StegoAd operation, and steal credentials. The campaign affected up to 2.6 million users and ran for two years.
Following the removal of the extensions, Microsoft stock slipped.
Epilogue added 66d ago, after coverage quieted.
Answered
What were the 119 Edge extensions used for?
The 119 Edge extensions were used to hide malware within images and fonts, steal user credentials, and conduct ad fraud.
How many users were affected by the StegoAd campaign?
The StegoAd campaign affected up to 2.6 million users.
What is the current status of Microsoft's stock?
According to coverage from TipRanks, Microsoft's stock has slipped following the removal of the malicious extensions.
Where it stands
- Velocity & Diffusion: Coverage exploded across 6 distinct news outlets with 6 published articles, achieving a live velocity of 4.
- Primary Driver: Microsoft's removal of 119 malicious Edge extensions has raised concerns about browser security.
- Predictive Outlook: Archynetys algorithmic models forecast this story will fade from trending status over the next 24 hours.
- Source Integrity: Verified strictly against primary headline reporting under zero-hallucination protocols.
Microsoft has removed 119 Edge browser extensions that were found to hide malware within images and fonts. The extensions, part of a campaign known as StegoAd, were designed to steal user credentials and conduct ad fraud. Coverage from Redmondmag.com, Malwarebytes, Security Affairs, Risky Business Newsletters, and The Hacker News emphasizes the scale of the operation, which affected up to 2.6 million users over two years.
TipRanks reports that Microsoft's stock has slipped following the announcement. Next, watch for updates on the impact of the removed extensions on affected users. Coverage does not yet specify the extent of the damage or the measures Microsoft is taking to assist users.
Additionally, monitor for any further developments in browser security as a result of this incident.
Synthesized by Archynetys from the headlines below under a strict no-invention contract. ✓ fact-checked: all claims supported by sources Updated 74d ago.
Sources (6)
- Microsoft Disrupts StegoAd Extension Campaign Affecting Up to 2.6 Million Users Redmondmag.com · 74d ago
- 119 Edge extensions promised useful tools, instead downloaded malware Malwarebytes · 74d ago
- Microsoft Stock (NASDAQ:MSFT) Slips After Pulling 119 Edge Extensions TipRanks · 74d ago
- StegoAd: How 119 Fake Browser Extensions Stole Credentials and Ran Ad Fraud for Two Years Security Affairs · 74d ago
- Microsoft takes down StegoAd operation Risky Business Newsletters · 74d ago
- Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts The Hacker News · 74d ago
How fast it spread
How fast coverage is spreading — measured hourly from article rate × source diversity. How this works →
Topics
Related trends
Microsoft’s head of comms is leaving after almost 20 years
Microsoft’s long‑time communications chief exits, igniting debate over how many years he actually served.
Jensen Huang Addresses AI Fears After Human Extinction Warnings
Nvidia’s CEO urges calm as AI fear spikes, branding the technology a trillion‑dollar electricity‑like wave.
Another Microsoft team admits it’s struggling to handle flood of AI-generated code
Microsoft rushes AI‑driven automation to tame a flood of AI‑generated Edge extensions, while internal teams admit the challenge remains.
Anthropic discloses fourth AI hacking incident missed in earlier review
Anthropic’s fourth Claude breach spotlights AI misuse, from virus research to espionage, shaking confidence in model safety.
PHYSINT shifts from PlayStation to Xbox as Kojima signs a new deal with Microsoft
Kojima’s Physint jumps from Sony to Xbox, flagging a major publishing shift.
Chrome V8 Zero-Day Exploited in the Wild Enables Code Execution Inside Sandbox
Chrome’s V8 zero‑day is being weaponised in the wild, letting attackers run code inside the browser sandbox.
Open prediction lab
Can you beat the machine?
Pick tomorrow's top trend, then compare your result with Archynetys's self-graded forecast.
📬 The daily trend digest
The world's top trends, once a day. No spam, one-click unsubscribe.