Microsoft Removes 119 Edge Extensions That Hid Malware in Images and Fonts
Summary
Microsoft has shut down a long-running malicious extension operation on the Edge Add-ons store that hid its payloads inside ordinary image and font files, then woke up days after install to steal credentials and run ad fraud. The company calls it StegoAd, a mash-up of steganography and adware, and ties 119 extensions to a single threat actor it says has been active since at least 2021.
Lotu Radar provides attributed news summaries and links to the original publisher. Full reporting and copyright remain with the source.