KODI is probably the best media player of the last years. Not only is it available for practically any platform we can think of (PC, mobile, Raspberry), but it also has an overwhelming set of functionalities.
It is capable of reading almost any video and audio format, as well as having a 100% customizable interface. Although without a doubt, one of its greatest attractions is the extensions, also known as add-ons. We could say that they are small "applications" that we install in KODI, in such a way that it allows us to expand their possibilities almost to infinity.
Many of these add-ons can be installed directly from the official KODI repository. Obviously, all these extensions are clean, legitimate and have been approved by the XBMC community or Team KODI. In this group we would find add-ons such as Netflix, YouTube, and many other legal add-ons to watch series and movies on KODI.
Extensions for KODI that we must avoid if we do not want to be infected by malware
But make no mistake, there are many add-ons that are used to view paid content for free. We talk about those extensions that are installed from external repositoriesAnd beware, because all that glitters is not gold.
Why are we in danger if we install one of these add-ons
When someone installs an add-on to view pirated content, they usually do not wonder about the effect it may have on the security of their device. In fact, this is the hook that malware distributors use to infiltrate our computer.
The KODI developers have it clear, and confirm that the malware that enters KODI does so through add-on updates to watch premium content for free.
In some cases, they are not only used to infect computers with viruses. Without going any further, a couple of years ago, the owner of a well-known add-on used its users to make a botnet and carry out a DDoS attack.
The blacklist of 293 potentially dangerous KODI add-ons
As indicated in the official KODI wiki, these are the 293 extensions that violate the rules of use of the KODI forum (remember that we are talking about an Open Source tool). Developers not only do not offer support for these external plugins: their use can also lead to banning or expulsion.
123Movies |
Aftershock |
1Angels |
1Channel |
AceStreams |
Adryanlist |
13Clowns |
Alpha |
AllDebrid |
Alvin |
All Movies Stream |
All eyez on me |
Friends |
Animeram |
Aragon |
area 51 |
Ares |
Arrakis |
Aspis |
At The Flix |
Atomic |
Atom Reborn |
BaddAssMovies4U |
Bandicoot |
Bassfox-official |
BBTS |
BBTSIP |
Beast |
Bennu |
Binky tv |
Blamo |
Bob unleashed |
Brettus |
Bubbles |
Caretaker |
CartoonHD |
Cartoons8 |
cCloud |
Cellar door |
Brain |
Chappa’ai |
Chronos |
Cinema |
Cloudword |
Community Portal |
Configurator for Kodi |
Config wizard |
Cosmic saints |
Covenant |
Daffys |
Deccan Delight |
Dexter tv |
Diabolik |
Diesel |
Ditto Rain |
Ditto HotRain |
DOCU HUB |
Dreamcatcher |
Duck Shit |
Durex |
Einthusan |
The Golden |
Elementum |
Eliplex TV |
Elysium |
Entertainment hub |
Exodus |
ExodusRedux |
Fan Film |
F_50ci3ty |
F.T.V. |
Falcon Ultra |
F4M tester |
Falcon |
F4M proxy |
Falcon Project |
Film Kodi |
Film Dictator |
Final gear |
Fine and dandy |
Fire TV Guru |
Flixnet |
Free Streams |
Gaia |
Genesis reborn |
Genie TV |
Goliath |
Good fellas |
GoMovies |
GoTV |
Gurzil |
HalowIPTV |
Hard Nox |
Hot rain |
I4a TV |
I Watch Online |
Icarus |
Ice Films |
Incursion |
Indian tv |
Indigo |
Infiniflix |
IPTV Stalker |
IPTV Simple Client 2 |
Hombre de Hierro |
IStream |
IVue TV |
Iwannawatch |
J1nxPack |
Jango Music |
Jeckyll hyde |
Jesus Box |
JokerSports |
Jor El |
Kartina TV |
Kidsflix |
Kiss Anime |
Klugscheisser wizard |
KodiCat Wizard |
Lastship |
KodiUK TV Wizard |
Kratos |
Kodiland |
Latest Dude |
Legendary |
Leviathan |
Livehub |
Live Streams Pro |
Looking glass |
Lucky IP TV |
Magic dragon |
Magicality |
Magyck PI |
Marvin |
MashUp |
Maverick |
MD repo |
Mega Search |
Marline |
Metallik |
Metalliq |
MK Sports |
Mobdina |
Mobdro |
Movie Hut |
MotorReplays |
Movie Hub |
Money sports |
Movie Night |
Movies Tape |
Movie25 |
Movie4k |
Movies XK |
MovieStorm |
Mp3streams |
MrKnow |
MrPiracy |
Mucky duck |
MuchMovies |
Mutts nuts |
Navi X |
nemesis |
Neptune Rising |
Nextgen |
NLView |
No Limits |
One Click Moviez |
OCW Reborn |
One Alliance |
Nole cinema |
One Nation |
Online Movies Pro |
Operation Robocop |
Ororo TV |
Overeasy |
P2P Streams |
Palantir |
Paradox |
Paragon |
Phoenix |
phstreams |
Picasso |
Placenta |
Players Klub |
Plexus |
Popcorn Time |
Poseidon |
Prime Links |
Primewire |
Project Cypher |
Project Free TV |
Pro Sport; Pro-Sport; ProSport |
Press |
Pyramid |
Quantum |
Quasar |
Rapid Bit |
Real Debrid |
Real Movies |
Rebirth |
Release Hub |
Renegades TV |
Rising Tides |
RockCrusher |
RL series |
RobinHood Project |
Resistance |
Royal We |
SALTS |
Sanctuary |
Sasta TV |
Schism |
Season dream |
Seren |
Settv |
Selfless |
Sdarot.tv |
Showbox |
Silent Hunter |
Smooth streams |
Soap Catchup |
Soulless |
Sparkle |
Specto |
Spinz tv |
Sports Access |
Sport A Holic |
Sports devil |
Stream Cinema |
Stallion |
Stream army |
Sportsmania |
Stream hub |
Stream on Demand |
Super Streams |
Stream This TV |
Subzero |
Stream Storm TV |
SuperTV |
Supremacy |
Swa Desi |
Swiftstreamz |
Tantrumtv |
TARDIS |
TATA.TO-TV |
TATA.TO-VIDEO |
TeamZT Kriptix |
TeeVee |
Tempest |
Terrarium TV |
The Beast |
T Killa |
Tiggers |
The Dog’s Bollocks |
Toon mania |
TurkVod |
TVOnline |
UK Turk Playlist |
UK TV Now |
Ultimate installer |
Ultimate IPTV |
Universal Scrapers |
Uranus |
Vader Streams |
Vdubt25 |
Velocity |
Video Devil |
Vip secret |
Vortech TV |
Vstream |
White cream |
White devil |
Wolfpack |
Wookie wizard |
Wraith |
Wrestling On Demand |
Xfinity Installer |
XMovies8 |
Xunity |
Yify Movies |
Yoda |
Zem TV |
Zeta TV |
Zeus |
Beware of old extensions
As we mentioned a bit above, malware usually enters through updates from these external add-ons. The method used by cybercriminals is really simple but effective.
- First, they look for old extensions that have been abandoned by their developers. Since its owners have stopped paying for the domain from this external source, they buy it.
- Once they have control of the domain of this external add-on, they take advantage of it to introduce malware into their code. It is enough to publish a new update for the malware to spread to all devices that have the add-on installed.
For this reason, if we see that we have some external plugin for KODI that has stopped working, it is best to uninstall it as soon as possible, since we run the risk that it will be "reused" by third parties to get "the bug" and blow us away.
Some will say that it is divine justice (remember what you were using that add-on for), but it is still a highly recommended use, at least as far as security is concerned.
You have Telegram installed? Receive the best post of each day on our channel. Or if you prefer, find out everything from our Facebook page.