16 Firefox Extensions Discovered Stealing Crypto Wallet Credentials And Private Keys
Cybersecurity researchers identify 16 malicious Firefox extensions posing as crypto wallets to steal recovery phrases and private keys from users.
Cybersecurity researchers identify 16 malicious Firefox extensions posing as crypto wallets to steal recovery phrases and private keys from users.
CERT-UA has identified more than 100 compromised websites delivering LunexStealer through fake Cloudflare verification pages and ClickFix techniques, urging organisations to strengthen security controls.
Google has reduced Chrome API vulnerability response times by using AI to detect, validate, and patch security flaws, including a critical vulnerability that remained undiscovered for 13 years.
Microsoft has uncovered a malicious Chrome extension impersonating Perplexity AI that intercepted user searches, captured address bar input, and routed data through attacker controlled servers before redirecting users to legitimate search results.
A new cybersecurity bulletin details major security developments including browser threats, curl vulnerabilities, phishing campaigns, smart TV proxyware, AI driven cybercrime, ransomware activity, and software security updates.
Researchers discover dormant JavaScript injection capability in the Adblock for YouTube Chrome extension with more than 10 million installs, raising concerns over browser security and user privacy.
Cybersecurity researchers have uncovered a coordinated campaign involving malicious JetBrains Marketplace plugins and Chrome extensions designed to steal AI provider API keys and capture private conversations from popular AI chat platforms.
Cybersecurity researchers uncovered 152 Chrome wallpaper extensions tied to adware and fake traffic generation, affecting over 105,000 installs through Chrome Web Store.
Google has released Chrome security updates to address 74 vulnerabilities, including actively exploited zero day CVE 2026 11645 affecting the V8 JavaScript engine.
Cybersecurity researchers have disclosed ChatGPhish, a vulnerability affecting ChatGPT web summaries that could expose users to phishing attacks through malicious Markdown links, QR codes, and prompt injection techniques.