Cybersecurity researchers have warned of malicious images pushed to the official “checkmarx/kics” Docker Hub repository. In an alert published today, software supply chain security company […]
More than 100 malicious extensions in the official Chrome Web Store are attempting to steal Google OAuth2 Bearer tokens, deploy backdoors, and carry out ad […]
Cybersecurity researchers have discovered a new campaign in which a cluster of 108 Google Chrome extensions has been found to communicate with the same command-and-control […]
While much focus in AI security is on protecting ‘shadow’ AI and GenAI use, a significant vulnerability remains unaddressed: AI browser extensions. A new report […]
A new report called “BrowserGate” suggests that LinkedIn, owned by Microsoft, is using hidden JavaScript on its website to identify browser extensions and gather device […]
A new study called “BrowserGate” suggests that LinkedIn, owned by Microsoft, is secretly using JavaScript code on its website to examine visitors’ browsers for installed […]
The GlassWorm supply-chain attack has recently expanded, with researchers identifying 72 additional malicious extensions on the Open VSX Registry as of March 2026. This campaign targets developers by abusing trusted extension […]
Two Google Chrome extensions, QuickLens and ShotBird, were recently identified as malicious following a change in ownership. These extensions, which previously held legitimate reputations and “Featured” badges, were […]
A significant vulnerability was recently found in Chrome’s Gemini Live AI assistant. It could have allowed malicious browser extensions to take over the AI panel […]
© Bulletproof Servers. All rights reserved.