Avast reportedly sold user web browsing data

Pixabay
(Image credit: Pixabay)

Popular antivirus application Avast and its subsidiary AVG have been accused of selling highly sensitive browsing histories of millions of their users.

According to an investigation from Motherboard and PCMag, both Avast and AVG, which are among the most commonly used antivirus programs, were tracking data including Google searches, GPS co-ordinates, LinkedIn browsing history, people watching specific YouTube videos, and even porn website visits.

The investigation found that Avast used another subsidiary named Jumpshot to repackage the data and sell it to companies like Google, Yelp, Microsoft, McKinsey, Pepsi, Home Depot, Condé Nast, Intuit, and more. 

Breached

According to the report, the user data was collected with the help of free antivirus programs installed on the computer. While Avast claimed that it collects data based on a user giving their consent, multiple users were unaware of both the collection of data as well as it being sold to large companies without their consent.

This includes tracking the date and time of a user visiting a porn site, the search term used on the site and even the video watched by the user. While the tracked data did not have personal identifiers, the investigation found it was fairly easy to unmask individuals due to the amount of data available.

Jumpshot has reportedly made millions from these sales as this data helps companies to target their prospective customers precisely. The company's website states that it provides digital intelligence from “Internet’s most valuable walled gardens,” and offers insights which help in “path to purchases, revenue, website traffic sources, conversion rate data and more.” 

While few Jumpshot products only contain a limited amount of data, its product called “All Click Feed” contains data of all the clicks on major e-commerce websites like Amazon.com, Walmart.com, Target.com, BestBuy.com, or eBay.

This isn’t a standalone incident where Avast has been found guilty of tracking user data. The company's browser extension was previously found to be tracking user data without consent and sending it over to Jumpshot. Once highlighted, the company quickly complied with browser policies and later discontinued collecting data from browser extensions.

Via PCMag

TOPICS
Jitendra Soni

Jitendra has been working in the Internet Industry for the last 7 years now and has written about a wide range of topics including gadgets, smartphones, reviews, games, software, apps, deep tech, AI, and consumer electronics.  

Latest in Security
Woman shocked by online scam, holding her credit card outside
Cybercriminals used vendor backdoor to steal almost $600,000 of Taylor Swift tickets
Woman using iMessage on iPhone
UK government guidelines remove encryption advice following Apple backdoor spat
Cryptocurrencies
Ransomware’s favorite Russian crypto exchange seized by law enforcement
Wordpress brand logo on computer screen. Man typing on the keyboard.
Thousands of WordPress sites targeted with malicious plugin backdoor attacks
HTTPS in a browser address bar
Malicious "polymorphic" Chrome extensions can mimic other tools to trick victims
ransomware avast
Hackers spotted using unsecured webcam to launch cyberattack
Latest in News
WhatsApp
WhatsApp just made its AI impossible to avoid – but at least you can turn it off
ChatGPT vs Gemini comparison
I compared GPT-4.5 to Gemini 2.0 Flash and the results surprised me
Apple iPhone 16 Plus
Apple officially delays the AI-infused Siri and admits, ‘It’s going to take us longer than we thought’
The Meta Quest Pro on its charging pad on a desk, in front of a window with the curtain closed
Samsung, Apple and Meta want to use OLED in their next VR headsets – but only Meta has a plan to make it cheap
AMD Ryzen 9000 3D chips
AMD officially announces price and release date for Ryzen 9 9900X3D and 9950X3D processors
Google Pixel 9
There's something strange going on with Google Pixel phone vibrations after the latest update