Surfly Chrome Extension

ID: imgddedogodgmdipeekelamfepjogogl

Could be malicious

Supported Languages

🇺🇸English

Extension Info & Metadata

Status
Removed
Version
2.0
Size
0.33 MB
Rating
0.0/5
Reviews
0
Users
24
Type
Extension
Updated
May 15, 2020
Category
1_communication
Price
Free
Featured
No
Visibility
Listed
Mature
No
By Google
No
Trusted
Yes

Publisher Contextual Analysis

Trusted
Author
extensionView Profile
Country
IL
MX records exist
Yes
Domain exists
Yes
Is disposable
No
Is role-based
No
Mailbox exists
Yes
Address
Shlomo Ibn Gabirol St 30 Tel Aviv-Yafo 2134124 IL
Website
Visit
Total Extensions
33
Active
12
Obsolete
21
Listed
31
Unlisted
2
Total Users
432,458

Surfly Co-Browsing Extension.

Allows Surfly co-browsing with configurable options

Item
Type
Severity
Description
webRequest
Permission
Critical
This permission enables the extension to monitor and analyze all web requests made by the browser. Rated Critical because it can observe all network traffic including sensitive data, track browsing behavior, and gather authentication tokens.
webRequestBlocking
Permission
Critical
This permission allows the extension to intercept, modify, or block any web request in real-time before it reaches its destination. Rated Critical because it can modify sensitive data (like passwords, credit cards) before encryption, redirect traffic to malicious sites, or block security updates.
<all_urls>
Permission
Critical
This permission grants access to all websites without restriction. Rated High because it can access any web content, monitor all web activity, and potentially steal sensitive data across all sites.
Dangerous Permission Combination
Risk Factor
Critical
This extension can intercept, modify, and block web requests in real-time.
downloads
Permission
High
This permission controls file downloads and accesses download history. Rated High because it can download malicious files, access sensitive downloaded documents, and track user download patterns.
cookies
Permission
High
This permission provides full access to read and modify browser cookies. Rated High because it can steal session tokens, modify authentication cookies, and compromise accounts across websites.
Contextual Risk Factors
Risk Factor
High
The following context increases the overall risk:• 15% increase: Older manifest version lacks modern security controls
activeTab
Permission
Medium
This permission grants temporary access to the current tab. Rated Medium because it can access current page content when invoked, though limited to user-initiated actions.
storage
Permission
Medium
This permission allows storing data locally in the browser. Rated Medium because it can persist sensitive user data, track user activities over time, and potentially store malicious payloads.
tabs
Permission
Medium
This permission enables tab management and monitoring. Rated Medium because it can track open tabs, access tab metadata, and monitor user browsing patterns.
Older Manifest Version
Risk Factor
Medium
This extension uses Manifest Version 2
contextMenus
Permission
Low
This permission adds items to browser context menus. Rated Medium because it only modifies right-click menus without access to page content.
URLs
153
IPv4
7
IPv6
0

URLs

View the external URLs this extension communicates with to understand its network activity and data interactions.

Gain full insight into all external connections.

Upgrade for full visibility.

clients2.google.com/service/update2/crxhttps://clients2.google.com/service/update2/crx
${apiserver}/v2/sessions/https://${apiServer}/v2/sessions/?api_key=${widgetApiKey}`
stackoverflow.com/questions/26884140/open-import-file-in-a-chrome-extensionhttps://stackoverflow.com/questions/26884140/open-import-file-in-a-chrome-extension
getbootstrap.com-https://getbootstrap.com/
github.com/twbs/bootstrap/blob/master/LICENSEhttps://github.com/twbs/bootstrap/blob/master/LICENSE
www.w3.org/2000/svghttp://www.w3.org/2000/svg
kushagragour.in/lab/hint/http://kushagragour.in/lab/hint/
tc39.github.io/ecma262/https://tc39.github.io/ecma262/#sec-object.getownpropertydescriptor\nexports.f
tc39.github.io/ecma262/https://tc39.github.io/ecma262/#sec-string.prototype.split\n
tc39.github.io/ecma262/https://tc39.github.io/ecma262/#sec-regexp.prototype-@@split\n
Showing 1 to 10 of 160 rows
Rows per page:

Gain full insight into all external connections.

Upgrade for full visibility.

25.1.2.1
IPv4
-
21.2.5.8
IPv4
-
21.2.5.11
IPv4
-
21.2.5.6
IPv4
-
21.2.5.9
IPv4
-
25.4.3.1
IPv4
-
25.4.1.5
IPv4
-
Version
Size
Is Malicious
Findings
Permhash
2.0
Latest
0.33 MB
Malicious
—
Showing 1 to 1 of 10 rows
Rows per page:

Browse and explore files within this extension package

Gain full insight into all external connections.

Upgrade for full visibility.