Cybersecurity · 33 views
Malicious Edge extension abuses Native Messaging as bridge to malware
A malicious Microsoft Edge extension dubbed ‘Edgecution' has been used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor.
Summary
A malicious Microsoft Edge extension dubbed ‘Edgecution' has been used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor. Access to the local system is obtained by leveraging the Chrome Native Messaging protocol that allows browser extensions to interact with native desktop applications, such as a password manager communicating with the extension to fill in web forms.
AI summaries can be wrong sometimes—always verify important details using the source article.
How AI & Automation are usedMore from Cybersecurity
Continue reading recent Cybersecurity coverage
- Brevo supply-chain attack injected ClickFix scripts on customer sitesContinue reading
- Cyberattacks on Two Oil Tankers Prompt Coast Guard, FBI to Board VesselsContinue reading
- OpenAI Says Its Models Searched GitHub for Leaked API Keys During TrainingContinue reading
- CISA Retires Weekly Vulnerability Bulletin in Risk-Based PivotContinue reading
Support HappeningNow
Independent AI-powered news analysis is reader-supported. Your contribution helps cover infrastructure, summaries, and continued platform development.
Support HappeningNow