2025-01-03 UTC
# [tantek] For the folks here who are creating (aciccarello?), publishing, or using Chrome extensions, apparently it was not that difficult to phish (via OAuth! No user/pass. cc: aaronpk) sufficient credentials for a supply-chain attack on dozens of them: https://thehackernews.com/2024/12/16-chrome-extensions-hacked-exposing.html