131 WhatsApp Web Extensions Spam Brazilian Users, Bypass Limits

131 rebranded WhatsApp Web automation extensions on Chrome target Brazilian users with spam campaigns violating Google policies

  • Security researchers detected 131 rebranded WhatsApp Web automation extensions on the Google Chrome Web Store used to spam Brazilian users.
  • The extensions share one codebase and bypass WhatsApp’s anti-spam limits by automating bulk messaging.
  • Collectively, around 20,905 users have installed these add-ons, which are promoted as CRM tools for WhatsApp.
  • The extensions originate mainly from publishers named “WL Extensão” and “WLExtensao,” linked to a franchise model.
  • This activity violates Google’s policies, and some extensions have been updated as recently as October 17, 2025.

Cybersecurity experts have uncovered a large-scale campaign involving 131 rebranded clones of a WhatsApp Web automation extension on Google Chrome. These extensions targeted Brazilian users with spam messages over at least nine months, according to findings by the supply chain security company Socket. The campaign seeks to send bulk messages on WhatsApp while bypassing the platform’s rate limits and anti-spam controls.

- Advertisement -

The 131 browser add-ons use the same codebase, design, and infrastructure and have a combined total of about 20,905 active users. Security researcher Kirill Boychenko described the extensions as high-risk spam automation tools that inject code into WhatsApp Web, working alongside WhatsApp’s own scripts to automate and schedule messages for bulk outreach.

Examples of these extensions include YouSeller with 10,000 users, performancemais with 239 users, Botflow with 38 users, and ZapVende with 32 users. Despite appearing under various names and logos, most were published by entities called “WL Extensão” and “WLExtensao.” Socket believes a franchise model allows operation affiliates to flood the Chrome Web Store with clones of the original extension developed by DBX Tecnologia.

These add-ons are promoted as customer relationship management (CRM) tools for WhatsApp, offering features such as message automation, bulk messaging, and sales tracking. Google’s policy prohibits submitting multiple extensions with the same functionality, which these extensions violate. DBX Tecnologia also posted videos that discuss bypassing WhatsApp’s anti-spam algorithms.

Boychenko explained, “The cluster consists of near-identical copies spread across publisher accounts, is marketed for bulk unsolicited outreach, and automates message sending inside web.whatsapp.com without user confirmation. The goal is to keep bulk campaigns running while evading anti-spam systems.”

- Advertisement -

The discovery coincides with recent reports from Trend Micro, Sophos, and Kaspersky regarding a WhatsApp worm called SORVEPOTEL spreading a banking trojan named Maverick in Brazil.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

XRP Tops $2 on ETF Inflows, Regulatory Shift Fuels Rally Now

XRP climbed above $2 on Friday, its highest level since mid-December.SoSoValue data shows U.S....

Analyst: Exchange Wallets Skew ‘Whale Accumulation’ Data Now

Dogecoin, Cardano, and XRP led gains as short-covering and liquidations accelerated on Friday.Bitcoin traded...

Coinbase exec says CLARITY Act on right track despite delays

Coinbase executive John D’Agostino says the Digital Asset Market Clarity Act (CLARITY Act) is...

Nvidia rallies on China comeback; Wall Street eyes $300 soon

NVIDIA plans to raise H200 chip production to meet strong demand from China.President Donald...

Aave CEO Urges RWA Push After Governance Vote Rejection Now.

Stani Kulechov outlined a wider strategy after a governance vote rejected a proposal to...
- Advertisement -

Must Read

Best Metaverse Tokens to Buy on Binance for 10X Gains

Ever since Facebook renamed their company to Meta, as well as their plans to build a metaverse where we can travel into using Virtual...
Bitcoin (BTC) $ 89,963.00 1.35%
Ethereum (ETH) $ 3,108.76 3.03%
XRP (XRP) $ 2.03 8.31%
Bittensor (TAO) $ 254.93 7.16%
Polkadot (DOT) $ 2.15 7.57%
Cardano (ADA) $ 0.393518 9.95%
Chainlink (LINK) $ 13.20 2.04%
Hyperliquid (HYPE) $ 25.06 1.68%
Monero (XMR) $ 426.91 2.17%
Hedera (HBAR) $ 0.120858 4.16%
Toncoin (TON) $ 1.82 6.69%