Loading cryptocurrency prices...

131 WhatsApp Web Extensions Spam Brazilian Users, Bypass Limits

131 rebranded WhatsApp Web automation extensions on Chrome target Brazilian users with spam campaigns violating Google policies

  • Security researchers detected 131 rebranded WhatsApp Web automation extensions on the Google Chrome Web Store used to spam Brazilian users.
  • The extensions share one codebase and bypass WhatsApp’s anti-spam limits by automating bulk messaging.
  • Collectively, around 20,905 users have installed these add-ons, which are promoted as CRM tools for WhatsApp.
  • The extensions originate mainly from publishers named “WL Extensão” and “WLExtensao,” linked to a franchise model.
  • This activity violates Google’s policies, and some extensions have been updated as recently as October 17, 2025.

Cybersecurity experts have uncovered a large-scale campaign involving 131 rebranded clones of a WhatsApp Web automation extension on Google Chrome. These extensions targeted Brazilian users with spam messages over at least nine months, according to findings by the supply chain security company Socket. The campaign seeks to send bulk messages on WhatsApp while bypassing the platform’s rate limits and anti-spam controls.

- Advertisement -

The 131 browser add-ons use the same codebase, design, and infrastructure and have a combined total of about 20,905 active users. Security researcher Kirill Boychenko described the extensions as high-risk spam automation tools that inject code into WhatsApp Web, working alongside WhatsApp’s own scripts to automate and schedule messages for bulk outreach.

Examples of these extensions include YouSeller with 10,000 users, performancemais with 239 users, Botflow with 38 users, and ZapVende with 32 users. Despite appearing under various names and logos, most were published by entities called “WL Extensão” and “WLExtensao.” Socket believes a franchise model allows operation affiliates to flood the Chrome Web Store with clones of the original extension developed by DBX Tecnologia.

These add-ons are promoted as customer relationship management (CRM) tools for WhatsApp, offering features such as message automation, bulk messaging, and sales tracking. Google’s policy prohibits submitting multiple extensions with the same functionality, which these extensions violate. DBX Tecnologia also posted videos that discuss bypassing WhatsApp’s anti-spam algorithms.

Boychenko explained, “The cluster consists of near-identical copies spread across publisher accounts, is marketed for bulk unsolicited outreach, and automates message sending inside web.whatsapp.com without user confirmation. The goal is to keep bulk campaigns running while evading anti-spam systems.”

- Advertisement -

The discovery coincides with recent reports from Trend Micro, Sophos, and Kaspersky regarding a WhatsApp worm called SORVEPOTEL spreading a banking trojan named Maverick in Brazil.

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Clear Street Prepares $10B-$12B Crypto IPO Led by Goldman Sachs

Clear Street, a New York brokerage, plans a public offering with a valuation between...

BRICS Expands Gold Pact to 33 Nations, Boosts Dollar-Free Trade

The BRICS Gold pact now includes 33 countries aiming to trade precious metals independently...

Bitcoin Treasury Firms Face “Darwinian Phase” Amid Market Downturn

Bitcoin treasury companies face structural challenges as equity prices drop below Bitcoin net asset...

Shiba Inu Whale Withdraws 169B SHIB from Coinbase Sparking Speculation

A whale withdrew 169.13 billion SHIB tokens from Coinbase in six transfers over 17...

Crypto Firms Raise $16M for Hong Kong Tai Po Fire Relief Efforts

Over 30 cryptocurrency firms and fundraising groups have contributed about $16 million to Hong...
- Advertisement -

Must Read

6 Best VPN Providers That Accept Monero

Privacy and anonymity are probably the most important things that we should all consider in today's internet era. Although there are a lot of...