More than half a million VKontakte accounts hacked using malicious Chrome extensions

(Image credit: Lesterman / Shutterstock)

Subscribe to our newsletter


  • Koi Security discovered a malware campaign hacking more than 500,000 VKontakte accounts via Chrome extensions
  • Add-ons automatically subscribed victims to the attacker’s VK groups (1.4 million members), manipulated CSRF tokens, injected advertisements, and stole payment data.
  • Ongoing campaign since mid-2025, maintained by the malicious actor “2vk”, primarily targeting Russian-speaking users.

More than half a million VKontakte accounts were hacked during a malware campaign launched on the Google Chrome Web Store.

The campaign was spotted by researchers at Koi Security and included five extensions advertised as an improvement to the platform.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top