Drooid Logo
Back to story perspectives

Full Breakdown

Google Blocks Malicious Chrome Extension "Save as Image Type"

3/17/2026, 12:56:53 AM

Core Event: Malware Discovery in Chrome Extension

Google has recently removed the "Save as Image Type" Chrome extension, which had over one million users, after identifying it as containing malware. The extension, which allowed users to save images in various formats, was flagged for hijacking affiliate links, potentially redirecting revenue from legitimate purchases to unauthorized sources.

Background & Context: Extension's Functionality and Ownership Change

The "Save as Image Type" extension was popular for its ability to convert WebP images into more commonly used formats like PNG and JPEG. However, reports indicate that the extension underwent a change in ownership in August 2024, shifting from a developer named Lauren Bridge to a new entity called Image4Tools. This transition appears to coincide with the introduction of malicious practices, including scraping affiliate data from users without their consent.

Data & Statistics: User Impact and Extension Removal

Upon its removal, the extension had amassed at least one million users. Google’s action followed reports from users on Reddit, who noted that the extension was redirecting links on sites like Amazon and Best Buy. The malicious code, found in the inject.js file, was designed to communicate with external servers and compile lists of URLs, injecting affiliate links from 578 different sites.

Official Statements & Responses

Google has not yet provided an official explanation for the extension's removal, but the company has confirmed that it contains malware. The Chrome Web Store has also removed the extension's page, making it unavailable for download. In response to the situation, users have begun exploring alternative extensions, such as "Save Image As PNG," which reportedly adheres to Chrome's user practices.

Criticism & Opposition: User Concerns and Comparisons

Users have expressed frustration over the extension's behavior, with some initially believing that issues with affiliate links were related to the websites themselves. Comparisons have been drawn to the Honey extension, which previously faced scrutiny for similar data scraping practices. Reddit users have noted that the "Save as Image Type" extension's actions mirror those of Honey, raising concerns about the security of Chrome extensions in general.

Conflicting Reports & Gaps

While the majority of reports agree on the extension's malicious activities, there is some ambiguity regarding the exact nature of the malware. It is noted that the extension did not explicitly install malware on devices but engaged in questionable data practices. Additionally, the timeline of the ownership change and its direct impact on the extension's functionality remains unclear.

Verbatim Quotes

  • “We’ve nevertheless asked Google for an official explanation of why the extension was blocked, and we’ll update our article as soon as the company responds to us.” — Android Authority

As users seek alternatives, the incident underscores the importance of vigilance regarding browser extensions and their potential risks.