Am I Being Pwned? logoAm I Being Pwned?
Book a demo
Homegjennbho
Findings · 3
+9 more findings locked
CRITICAL FINDINGS · 3
  1. 01chrome.storage.local data injected into template literal and executed as script on zhipin.com via chrome.scripting.executeScript, enabling stored-data-to-code-execution
  2. 02Remote code execution via fetching JS from user-configured server and executing it via chrome.scripting.executeScript on third-party job sites
  3. 03Extension uses declarativeNetRequest to spoof Origin, Referer, Sec-Fetch-*, and CSRF headers on requests to multiple recruitment platforms, impersonating legitimate browser navigation
+9 more findings locked
OTHER EXTENSIONS

Is gjennbho safe?

Critical risk

No summary available.

v600.0.0791Chrome Web Store
100Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

+9 more findings not shown

Book a call to see all findingsScan your browser
Updated 30 May 2026gjennbhoiojgmldlfddhmklegihhdeci

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact