< ciso
brief />
Tag Banner

All news with #browser security tag

115 articles

40 Malicious Firefox Extensions Target Web3 Wallets

🛡️ A cluster of 40 malicious Mozilla Firefox extensions has been identified stealing cryptocurrency wallet secrets by impersonating popular Web3 products like OKX, Rabby Wallet, and TronLink. Socket Threat Research attributes the extensions to a broader set of 77 related add-ons with shared code and infrastructure, a campaign they call Offside Wallet Theft Factory, active since March 2026. The threat actors used Supabase projects, Cloudflare Workers, and hard-coded C2 to exfiltrate recovery phrases, private keys, and credentials, often hiding malicious payloads behind benign sports-score or utility shells. Researchers warn the economics of disposable extensions and repurposing identities make the Firefox Add-ons ecosystem an attractive target.
read more →

New macOS infostealer hijacks browsers for remote control

🛡️ Jamf Threat Labs uncovered a multi-stage macOS infostealer named AmnesiaStealer that uses a fake GitHub download page to trick victims into running a Terminal command which installs malware. The Rust-based loader retrieves a password-protected ZIP, deploys a universal Mach-O payload and collects passwords, Keychain items, browser data and other sensitive files. A distinct stream_module converts the victim’s Chromium browser into a remotely controlled session via WebSocket, allowing attackers to export cookies and perform browsing actions.
read more →

Chrome reduces Android notification abuse by billions

🔔 Google reports that Chrome's anti-abuse systems blocked over 7 billion unwanted Android notifications per day in Q1 2026. The company says notification abuse has become a vector for scams, malware, phishing, and fraudulent payment requests, prompting a layered "Swiss cheese" defense model. Chrome now auto-revokes notification permissions from inactive or repeatedly abusive sites and allows users to review and restore access via Safety Hub. The browser also limits message rates for disruptive sites and adjusted permission prompts to be less intrusive on Android.
read more →

Unified Browser and Endpoint Security Integration

🛡️ Palo Alto Networks announces native integration between Prisma Browser and Cortex XDR, closing critical SOC visibility gaps by turning the browser into an active security sensor. This integration feeds browser telemetry—DLP violations, tampering, and configuration changes—directly into Cortex, enabling correlated alerts and precise, surgical containment without disrupting user productivity. The approach avoids brittle extensions and provides deep, real-time context for investigations.
read more →

Cloudflare launches Kitesurf: a browser for agents

🛰️ Kitesurf is a new browser built by Cloudflare to run entirely on top of Workers and optimized for AI agents. It targets agentic tasks by being far more efficient in CPU and memory than Chromium for common operations like screenshots and HTML extraction. The design emphasizes isolation, stateless components, robust exception handling, and extensive testing using Web Platform Tests plus integration and visual regression suites. Kitesurf’s architecture separates the Engine, PageScript, and PageRenderer, uses Rust-compiled WebAssembly where possible, and enforces network access through a SandboxOutbound worker to minimize risk.
read more →

WebKit proxy bypasses can expose real IPs

🔒 Researchers disclosed that features in Apple's WebKit can bypass configured proxies and reveal users' real IP addresses, affecting iCloud Private Relay. The flaw stems from DNS prefetching, WebAuthn related origin requests, and WebTransport, which send traffic outside the relay. A PoC site demonstrates the leak, and Apple says it is investigating while the issue also impacts macOS and other WebKit-based browsers.
read more →

Securing Agentic Browsing in Chrome Enterprise

🔒 This blog explains how Chrome Enterprise is adapting browser security for autonomous AI agents operating in enterprise web workflows. It highlights the browser's contextual advantage for anchoring agentic actions to corporate identity and access controls, and describes how features like integrated Data Loss Prevention and enhanced visibility help mitigate new data exposure vectors. The post also outlines layered protections, red-teaming, and expanded vulnerability rewards to strengthen agent security.
read more →

Chrome to block policy-installed new-tab hijackers

🛡️ Google is developing a Chrome security feature to block policy-installed extensions from hijacking the New Tab page or changing the default search engine on unmanaged consumer devices. The change, spotted in Chromium Gerrit, would enable a feature flag by default to prevent extensions forced by local policies from overriding the New Tab or search settings. Chrome would cancel such installations, record the extension ID as blocked, and avoid repeated download attempts, while allowing administrators an escape hatch policy when needed.
read more →

Patched Firefox JIT Bug Enabled Remote Code Execution

🛡️ Nebula Security disclosed a high-severity Firefox JIT vulnerability, tracked as CVE-2026-10702, that could be triggered simply by visiting a malicious webpage and was used to compromise Tor Browser builds embedding affected Firefox versions. Mozilla fixed the flaw in Firefox 151.0.3 and rated it High; the bug allows arbitrary code execution in the browser renderer process and was exploited by Nebula as the initial stage of their IonStack browser-to-kernel chain on an ARM64 Android 17 build. Users are urged to update to the latest Firefox release.
read more →

Claude Chrome extension flaw lets malicious extensions act

🛡️ A vulnerability in Anthropic's Claude for Chrome extension can let a malicious extension simulate clicks to trigger nine predefined AI workflows. The issue, found by Ax Sharma of Manifold Security, stems from the extension failing to verify the browser's Event.isTrusted flag before executing tasks tied to page click handlers. A malicious extension with permissions on claude.ai could inject elements and fire synthetic clicks to abuse Claude's authenticated access to services like Gmail, Docs, Calendar, and Salesforce. Anthropic acknowledged the report and classified a related skipPermissions parameter as informational.
read more →

New Claude for Chrome bugs let extensions abuse privileges

🔒 Researchers at Manifold Security found two vulnerabilities in Anthropic’s Claude for Chrome extension that let a malicious extension trigger privileged AI actions, including reading Gmail, Google Docs, and Calendar data. The flaws are reproducible in version 1.0.80 and persist eight releases after initial reporting. One issue allows synthetic clicks to bypass user verification due to missing event.isTrusted checks; the other places the extension into an elevated mode via a URL parameter. Manifold urges fixes to validate genuine user interactions and to avoid URL-driven privilege transitions.
read more →

Study Reveals Browser Wallets Enable Cross‑Site Tracking

🔎 Researchers at KU Leuven analyzed 85 popular browser-based crypto wallet extensions and found systemic privacy leaks that can link and de-anonymize users. The wallets reveal addresses in clear text to external servers, announce installed wallets to sites, and often fail to revoke access on logout. These behaviors allow separate addresses to be correlated, stale permissions to persist across sessions, and authorized wallets to expose addresses inside embedded frames, enabling cross-site tracking and potential deanonymization.
read more →

ModHeader removed after hidden browsing-history collector

🛡️ Google and Microsoft removed the popular ModHeader extension after researchers found a dormant browsing-history collector embedded in the official store builds. The collector, confirmed by Stripe OLT to be in the genuine Chrome package, stored encrypted domain lists and device fingerprints locally and was designed to upload them to api.stanfordstudies[.]com on a schedule if an internal allow-list were populated. While the allow-list shipped empty and no evidence shows data was exfiltrated, the extension still pinged extensions-hub[.]com and logged request metadata locally. Users are advised to uninstall ModHeader, rotate exposed secrets, and defenders should block the implicated domains and hunt for related indicators.
read more →

Cloudflare launches Precursor for session detection

🔍 Precursor is a client-side, session-scoped verification system from Cloudflare that continuously collects behavioral signals via a lightweight injected script to distinguish humans from bots across an entire user journey. It complements Turnstile as part of Enterprise Bot Management, feeding session-level signals into edge evaluators and existing bot-scoring and challenge systems. Designed with privacy in mind, Precursor captures minimal interaction metadata (timing, rhythms, movement patterns) rather than content and provides session-based analytics in Security Analytics. It is rolling out now and will be free until GA.
read more →

DuckDuckGo Browser Adds YouTube Video Ad Blocking

📰 DuckDuckGo's browser now blocks most video ads on YouTube, including pre-roll and in-play ads, using community-maintained uBlock Origin filter lists and its own compatibility rules. The feature is enabled by default on iOS, Mac, and Windows and can be turned on manually in Android settings. It is separate from Duck Player, and both can be used together to combine privacy protections and ad blocking while retaining standard YouTube features. Users are asked to test the new capability and submit anonymous feedback as it may be imperfect and occasionally require updates due to YouTube changes.
read more →

Critical Opera GX mod flaw allowed cross‑site data theft

🔒 An independent researcher discovered a critical vulnerability in Opera GX where GX Mods auto-install on download with no permission prompt, allowing an attacker to inject CSS across all pages. This behavior enabled a zero-click XS-Leak to recover a victim's Gmail address and facilitated a DoS crash when mods were forced into private mode. The issue was reported in February, patched on May 8, and the PoC was published on July 3.
read more →

Opera GX auto-install flaw allowed silent data leaks

🛡️ Researchers discovered a flaw in the gaming-focused Opera GX browser that allowed malicious websites to silently auto-install a GX Mod (a .crx look-and-feel package) and use its CSS to extract specific data from pages a victim visited. In a proof of concept, the team reconstructed a signed-in user's full Gmail address from a single visit, with no clicks required. Opera patched the issue in Opera GX version 130.0.5847.89, labeled the bug P1, paid the $5,000 maximum bounty, and reported no evidence of in-the-wild exploitation. There was no practical workaround prior to the patch.
read more →

WebAuthn Redirection Added to Browser RDP Clients

🔒 Prisma Browser added WebAuthn redirection to its in-browser RDP client, becoming the first non-Windows client to support Microsoft’s MS-RDPEWA protocol. The team found gaps in the spec, reverse-engineered undocumented Windows server behavior, and created a custom Chromium extension API to accept precomputed clientDataHash values. This approach reuses Chromium’s FIDO2 stack to support USB keys, Touch ID, Windows Hello and phone-as-authenticator transports.
read more →

Opera adds Paste Protect to block ClickFix attacks

🛡️ Opera has added Paste Protect, a feature that intercepts and blocks ClickFix-style attacks which trick users into copying and running malicious commands. The mechanism builds on existing Hijack protection and a new Injection protection to detect and prevent harmful content from reaching the browser clipboard across Windows, macOS, and Linux. When suspicious content is blocked, Opera shows a warning, a red indicator in the address bar, and permits viewing the first 120 characters or approving the copy after a 5-second delay. The feature is enabled by default and can be managed via Settings → Privacy & Security → Paste Protect.
read more →

Silent Swap clipper exploits browser extensions

🛡️ McAfee Labs uncovered an active campaign, dubbed Silent Swap, that deploys malicious Chromium extensions masquerading as a 'Google Notes' utility to intercept and replace cryptocurrency wallet addresses copied to the clipboard. The installers, observed in .NET and Golang variants, inject the extension into Chromium-based browsers by modifying protected preferences and recalculating security hashes to bypass store installation. The threat uses an EtherHiding technique to resolve C2 domains via the blockchain and performs dynamic, server-side wallet mappings to redirect funds to attacker-controlled addresses. Telemetry shows global infections, with higher concentration in India.
read more →