:

FAKE PERPLEXITY EXTENSION TRACKED USER SEARCHES

INDUSTRY DESK2 MIN READ
TUE, JUN 30, 2026

■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE

A malicious Chrome extension impersonating the Perplexity AI search engine has been intercepting user searches and collecting browsing data. The fraudulent extension was discovered on the official Chrome Web Store.

Security researchers identified a fake Perplexity extension distributed through the Chrome Web Store that captured search queries and user browsing information without consent. The malicious extension mimicked the legitimate Perplexity AI answer engine, making it difficult for users to distinguish from the authentic tool. Once installed, it intercepted search traffic and collected sensitive browsing data, exposing users to privacy violations. The discovery highlights ongoing security vulnerabilities in app marketplaces. Chrome Web Store relies partially on automated detection systems, which can miss sophisticated impersonation attempts. The fake extension remained available for an undetermined period before removal. Perplexity AI has not confirmed an official Chrome extension, making any Perplexity-branded extension on the Web Store potentially suspicious. Users should verify extension authenticity by checking developer information and reviewing permissions before installation. This incident joins a growing category of supply chain attacks targeting popular AI tools. Similar schemes have targeted ChatGPT, Google Bard, and other widely-used AI platforms. Attackers leverage legitimate brand recognition to bypass user skepticism. Recommended actions: - Remove any unfamiliar Perplexity extensions - Check installed extensions for suspicious permissions - Access Perplexity through perplexity.ai directly - Enable Chrome's enhanced safe browsing Google has removed the extension from the Web Store. Users who installed it should review their browsing history and monitor accounts for suspicious activity. The incident underscores the importance of downloading tools only from verified sources and reviewing extension permissions carefully.

■ SOURCES

Bleeping Computer

■ SUMMARY WRITTEN BY AI FROM THE LINKS ABOVE

■ MORE FROM THE SECURITY DESK

Australia's major supermarket chains Coles and Woolworths have confirmed testing facial recognition technology in their stores, sparking privacy concerns from advocates who warn the systems could normalize mass surveillance.

JUST NOWAI Desk

Breaches at shipping companies handling hardware wallet deliveries have compromised customer personal data, increasing risk of targeted physical theft and attacks against cryptocurrency owners.

3H AGOSecurity Desk

General Electric and Philips are investigating claims that the Clop ransomware gang breached their systems and stole data. The incidents mark the latest targets of the notorious cybercriminal group.

4H AGOAI Desk

France's Ministry of the Economy and Finance confirmed a data breach affecting 678,000 individuals after attackers compromised the General Directorate of Public Finances (DGFiP) systems.

5H AGOSecurity Desk

■ SUBSCRIBE TO THE DAILY BRIEF

ONE EMAIL, 5 STORIES, 06:00 UTC. UNSUBSCRIBE ANYTIME.