Get a Pentest and security assessment of your IT network.

Cyber Security

How Web Apps Can Turn Browser Extensions Into Backdoors

Researchers show how rogue web applications can be used to attack vulnerable browser extensions in a hack that gives adversaries access to private user data. The research shows how a specially crafted web application can bypass SOP protections by exploiting privileged browser extensions. After analyzing 78,315 extensions that used the specific WebExtension API, it found 3,996 that were suspicious. Researchers say browser vendors need to review extensions more rigorously. The findings are published in an academic paper titled Empowering Web Applications with Browser Extensions (PDF)

Source: https://threatpost.com/web-apps-browser-extensions-backdoors/141061/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security