HackerFeeds

CyberSecurity News

Malicious Twitch Browser Extension Leaks OAuth Tokens From Nearly 31,000 Users

The Hacker News
· September 14, 2026

AI summary

A malicious Twitch browser extension has compromised the OAuth tokens of nearly 31,000 users. The extension, named Twitch Enhanced Viewer, is linked to a developer named HISHIMIRO/jeetbot.cc and is available on both the Google Chrome Web Store and Mozilla Firefox Add-Ons store. The leaked tokens were sent to proxy servers operated by a Russian commercial bot service. The extension is identified as a cross-store threat, affecting users across multiple browser platforms. The breach highlights a significant security risk for users who have installed the extension.

Read the full article at The Hacker Newsthehackernews.com/2026/09/malicious-twitch-browser-extension.html

This is an AI-generated brief aggregated by HackerFeeds for convenience and grounded in the source’s own summary; the related CVE, threat-group and country data is from HackerFeeds’ own indexes. The original article is the authoritative source — all rights belong to The Hacker News.