Browser extensions are increasing the attack surface, putting employees and businesses at risk according to the 2025 Enterprise Browser Extension Security Report by LayerX.
Almost all enterprises have at least one extension installed with over half running more than ten, exposing sensitive data to potential risks.
More than half of extensions have 'high' or 'critical' risk permissions, with 53% of them allowing access to sensitive data.
To mitigate the threats, enterprises are advised to audit all browser extensions, categorize them based on risk profiles, and analyze permissions meticulously to enforce adaptive security policies.