Chrome and Firefox hit by encryption-busting malware – what you need to know

Google Chrome
(Image credit: Shutterstock)

Chrome and Firefox users are being hit by a new strain of malware that's able to intercept encrypted web traffic.

The malware, known as Reductor, was discovered by security researchers at Kaspersky in April this year. The team performed a full investigation, and have now released their findings in a report.

Reductor is a remote access trojan (RAT), which leaves the infected system open to vulnerabilities over a network. An attacker could upload, download and execute files, though the researchers haven't yet identified exactly what its creators intended to use it for.

"Analysis of the malware allowed us to confirm that the operators have some control over the target’s network channel and could replace legitimate installers with infected ones on the fly," said Kaspersky. "That places the actor in a very exclusive club, with capabilities that few other actors in the world have."

What to do

The malware only seems to have targeted users in Russia and Belarus; there are no reports of infections elsewhere in the world.

Once threats like Reductor are identified, antivirus companies like Kaspersky add them to their databases of known threats, so they will be detected and deleted during a standard scan.

The best way to avoid any malware infection is to always be cautious online: avoid downloading any email attachments you're not expecting, and don't download software from unofficial sources. 

For instances when malware slips through your defences, it's important to use antivirus software, and keep it up to date with the latest threat definitions so you'll be protected from newly identified threats.

Via Tom's Hardware

Cat Ellis
Homes Editor

Cat is TechRadar's Homes Editor specializing in kitchen appliances and smart home technology. She's been a tech journalist for 15 years and is an SCA-certified barista, so whether you want to invest in some smart lights or pick up a new espresso machine, she's the right person to help.

Latest in Browsers
Woman using a Windows computer with Microsoft Edge
Don’t panic – Microsoft’s Edge browser isn’t about to subject you to a flood of unblocked adverts (not yet, anyway)
Google Chrome browser icon
A new split-screen feature is coming to Google Chrome, and it's surprisingly powerful
The Microsoft Edge logo on a black background displayed on a laptop screen.
Microsoft just gave Edge a great new feature to ensure the browser doesn’t slow down the PC, and it’s tempting me to switch from Google Chrome
Google Chrome with Christmas theme in Windows 11
I've used Edge, Firefox, and Opera, and yet after ten years in tech journalism, I still come back to Chrome
Woman using a Windows computer with Microsoft Edge
Microsoft gets rid of ‘Edge uninstall’ advice page after facing criticism over it having nothing to do with removing the app, and just promoting the browser instead
Microsoft Edge
Sorry, you're not getting Microsoft Edge off of your PC, at least according to its new 'uninstall' document
Latest in News
DeepSeek
Deepseek’s new AI is smarter, faster, cheaper, and a real rival to OpenAI's models
Open AI
OpenAI unveiled image generation for 4o – here's everything you need to know about the ChatGPT upgrade
Apple WWDC 2025 announced
Apple just announced WWDC 2025 starts on June 9, and we'll all be watching the opening event
Hornet swings their weapon in mid air
Hollow Knight: Silksong gets new Steam metadata changes, convincing everyone and their mother that the game is finally releasing this year
OpenAI logo
OpenAI just launched a free ChatGPT bible that will help you master the AI chatbot and Sora
An aerial view of an Instavolt Superhub for charging electric vehicles
Forget gas stations – EV charging Superhubs are using solar power to solve the most annoying thing about electric motoring