New issue
Advanced search Search tips

Issue 714363 link

Starred by 2 users

Issue metadata

Status: WontFix
Owner: ----
Closed: May 2017
Cc:
EstimatedDays: ----
NextAction: ----
OS: Windows
Pri: 2
Type: Bug-Security



Sign in to add a comment

Phishing attempts by Russian hackers specific to Google Chrome

Reported by vich...@gmail.com, Apr 22 2017

Issue description

UserAgent: Mozilla/5.0 (Windows NT 10.0; WOW64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/57.0.2987.133 Safari/537.36

Steps to reproduce the problem:
1. Ran Chrome's fixes.
2. Full system scan with Bitdefender.
3. Note: this report is being made here because attempts to make it in the Help section have failed multiple times.

What is the expected behavior?
Expect Russian language ads, games, shopping sites, etc to discontinue on and within websites opened by Chrome. Please forward this report to the correct department, if necessary. I can't find anything online about fixes for GC.

What went wrong?
I am a home user. When I used Google Chrome, these ads, games, websites (like Aliexpress) show up on websites and when you click on something (like trying to sign in) after opening the site. Bitdefender detects phishing attempts, but is unable to block the ads on the websites when opened with GC. Exceptions: Facebook, desktop AOL (don't use GC to open), Internet Explorer, Microsoft Edge. I've attached some examples of what is showing up. I cannot re-enable Google Chrome, which I prefer, until this problem is dealt with. Note: the ads showed up on Facebook for a few days, but disappeared. If you need to contact me, please email at: vichp55@gmail.com.  Thanks.

Did this work before? N/A 

Chrome version: 57.0.2987.133  Channel: n/a
OS Version: 10.0
Flash Version:
 
FireShot Capture 22 - AliExpress — качественные товары по о_ - https___ru.aliexpress.com_ru_home.htm.png
1.0 MB View Download
FireShot Capture 10 - betsey johnson angel devil bat mirror jewelr_ - http___www.ebay.com_sch_i.html.png
1.8 MB View Download
FireShot Capture 11 - War Thunder - бесплатная онлайн-и_ - http___warthunder.ru_ru_free_registration.png
1.8 MB View Download
FireShot Capture 21 - How Russia hacks you - Mar. 30, 2017_ - http___money.cnn.com_2017_03_30_te.png
5.2 MB View Download

Comment 1 by vich...@gmail.com, Apr 22 2017

More screenshots for you. Note first screenshot above (Aliexpress) opened when I clicked WITHIN Chrome's security help section. 
FireShot Capture 20 - HGTV Smart Home Swee_ - http___www.hgtv.com_design_hgtv-smart-home_sweepstakes.png
1.6 MB View Download
FireShot Capture 21 - How Russia hacks you - Mar. 30, 2017_ - http___money.cnn.com_2017_03_30_te.png
5.2 MB View Download
FireShot Capture 18 - The Despair of Learning That Experienc_ - http___www.newyorker.com_news_benj.png
418 KB View Download

Comment 2 by mea...@chromium.org, Apr 22 2017

Cc: nparker@chromium.org
Thank you for the report. Can you also list the URLs of the sites?

Note that you can report phishing sites directly to Google's SafeBrowsing system at https://safebrowsing.google.com/safebrowsing/report_phish/?hl=en. 
Note that if your system has been infected by adware or malware that is injecting malicious ads into Chrome, you may find the Chrome Cleanup Tool helpful: https://www.google.com/chrome/cleanup-tool/

Comment 4 by mea...@chromium.org, Apr 24 2017

Labels: Needs-Feedback
Status: WontFix (was: Unconfirmed)
It sounds like #3 is the right approach here.
Project Member

Comment 6 by sheriffbot@chromium.org, Aug 8 2017

Labels: -Restrict-View-SecurityTeam allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment