Full Breakdown
Malicious Data Harvesting by Urban VPN Proxy Extension
12/16/2025, 10:32:20 PM
Overview of the Incident
A Google Chrome extension named Urban VPN Proxy, which boasts over six million users and a 4.7-star rating, has been implicated in secretly harvesting user data from various AI-powered chatbots, including OpenAI's ChatGPT, Anthropic's Claude, and Google's Gemini. The extension, developed by Urban Cyber Security Inc., was updated on July 9, 2025, to include functionality that captures every prompt and response exchanged with these AI platforms. This data is then exfiltrated to remote servers, raising significant privacy concerns.
Mechanism of Data Collection
The Urban VPN Proxy extension employs a JavaScript executor that is triggered when users interact with targeted AI chatbots. This script overrides browser APIs, allowing it to intercept and log user prompts, chatbot responses, conversation identifiers, timestamps, and session metadata. The data is sent to two servers, "analytics.urban-vpn[.]com" and "stats.urban-vpn[.]com." Notably, this data harvesting occurs even when the VPN service is turned off or user settings remain unchanged.
Privacy Policy and Data Usage
Urban VPN's updated privacy policy, effective June 25, 2025, states that it collects user data to enhance Safe Browsing and for marketing analytics. While the policy claims that data will be de-identified and anonymized, it acknowledges the potential for sensitive personal information to be processed. The extension also shares data with BIScience, a data broker, which uses the raw data for commercial insights. Critics argue that the extension's warnings about sharing sensitive data with AI companies are misleading, as it simultaneously collects this information.
Broader Implications and Related Extensions
Koi Security's research indicates that similar data-harvesting functionalities are present in other extensions from the same publisher, including Urban Browser Guard and Urban Ad Blocker, bringing the total install base to over eight million. The presence of a "Featured" badge on these extensions, which implies adherence to platform standards, has contributed to user trust, despite the malicious activities.
Criticism and Concerns
Experts have raised alarms about the implications of such data harvesting, particularly given the sensitive nature of conversations users have with AI chatbots. The incident highlights the risks associated with browser extensions, especially those that have gained user trust over time. Security researchers emphasize the need for users to regularly audit their installed extensions and be cautious of those with unclear data-collection practices.
Official Responses
The Hacker News has reached out to both Google and Microsoft for comments regarding the Urban VPN Proxy extension and its data harvesting practices. As of now, no official statements have been released.
Verbatim Quotes
- "Users who installed Urban VPN for its stated purpose – VPN functionality – woke up one day with new code silently harvesting their AI conversations." — Idan Dardikman, Koi Security
- "The harvesting feature sends that exact sensitive data - and everything else - to Urban VPN's own servers, where it's sold to advertisers." — Idan Dardikman, Koi Security
Conclusion
The Urban VPN Proxy incident underscores the vulnerabilities associated with browser extensions and the potential for malicious actors to exploit user trust. As users increasingly rely on AI for sensitive tasks, the need for stringent oversight and regular audits of browser extensions has never been more critical.
