Am I Being Pwned? logoAm I Being Pwned?
Book a demo
HomeSlitherPlus - Zoom, Skin Creator, Mod, Bots
Findings · 3
MEDIUM FINDINGS · 3
  1. 01bundle.js contains two obfuscated eval payloads decoded at runtime: one installs a WebSocket stub to intercept game traffic (dfs array, line 25298), another patches window.alpha_chars charCodeAt to break game authentication and installs window.isValidVersion and window.checkNick (Dm array, line 25301)
  2. 02In-game chat feature opens WebSocket to ws://eu.senpa.io:1269 and transmits player nickname, clan tag, and chat messages in cleartext (no TLS)
  3. 03Content script writes chrome.runtime.id into page localStorage under key 'tinyscrID' on slither.io/slither.com, making the extension ID readable by slither.io page scripts
OTHER EXTENSIONS

Is SlitherPlus - Zoom, Skin Creator, Mod, Bots safe?

Medium risk

No summary available.

SlitherPlus.iov7.1Chrome Web Store
45Risk

AI-generated. Findings may contain errors. Those marked Verified have been manually reviewed.

Publishers can request a review.

Findings

Updated 30 May 2026cpbghpalffgmgocmnigfhalghmaemffo

Am I Being Pwned?

Protecting organizations from malicious browser extensions.

© 2026 Bay Area Labs Inc. All rights reserved.

BlogHow it worksSecurityFor VendorsFAQAPI DocsPrivacy PolicyTerms of ServiceContact