Browser extensions that promise privacy are found to be selling AI conversations from millions of users. Security researchers at Koi Security discovered that popular VPN and ad blocker extensions are secretly intercepting all conversations with ChatGPT, Claude, and Gemini and reselling them to data brokers. Security researcher Idan Dardikman discovered the problem after wondering if anyone could read his private conversations with AI assistants.
For years, tech behemoth Google threatened to crack down on browser extension activity within its Chrome browser to improve security. Now, the company is making good on its threats and disabling browser extensions that don't comply with Manifest V3, its browser extension framework. Security experts, such as those at the Electronic Frontier Foundation (EFF), argue that Manifest V3 is not a viable solution for addressing real security concerns, including browser extensions that scrape users' browsing histories and sell the data to the highest bidder.