Latest

Browser Security

Web Security Update: North Korean APTs Target Devs, Gemini LLM Exploit & JavaScript Bundle Risks

This newsletter is AI generated and may hallucinate sometimes 😊 5 Malicious Chrome Extensions Attacking Enterprise HR and ERP Platforms for Complete Takeover * Five malicious Chrome extensions target enterprise HR/ERP platforms with advanced takeover techniques. * They steal authentication tokens, disable security, hijack sessions, and bypass MFA for fraud. * Mitigation requires

Browser Security

Browser Security Brief: Web-Based LLM Attacks & Prompt Injection Campaigns

This newsletter is AI generated and may hallucinate sometimes 😊 Widespread Campaign Exploits LLMs Through Web-Based Prompt Injection * Threat actors are conducting widespread campaigns exploiting Large Language Models (LLMs) through techniques like prompt injection, data exfiltration, and model manipulation. * These attacks frequently leverage web application interfaces, using browsers as the primary