This extension exhibits behaviors commonly associated with malware. Installation is not recommended.
Harvesting AI chat data and selling to brokers
Urban VPN was caught intercepting and collecting user conversations with AI chatbots, then selling this data to third-party data brokers.
This extension shows critical risk indicators. It requests highly sensitive permissions combined with suspicious code patterns. Proceed with extreme caution.
Based on 15 permissions including high-risk ones, 80 code findings, 4 dangerous combinations.
Extension uses tab tracking APIs (onUpdated/query) and communicates with external servers — potential browsing surveillance.
Extension intercepts network traffic and sends data externally — potential man-in-the-middle behavior.
Extension manages other extensions and executes dynamic code — behavior consistent with malware dropper.
Extension has access to all sites and captures keyboard input — behavior consistent with a keylogger.
This extension does not define a Content Security Policy. A CSP helps prevent XSS and code injection attacks.
Resolved from __MSG_* i18n placeholders:
Name: Urban VPN Proxy
Description: Get the best secured Free VPN access to any website, and unblock content with Urban VPN
Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.
JavaScript files are exposed as web-accessible resources. Matched websites can load and interact with extension scripts.
JavaScript files are accessible to ALL websites. Any page can load and interact with these scripts, enabling web→extension attacks.
Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.
Web-accessible resources use <all_urls> or wildcard patterns, exposing resources to every website.
100 indicators of compromise found