logo

New “Prompt Poaching” Attack Steals Users’ AI Conversations via Malicious Browser Extensions

ID: 581ac738-504d-58e2-9fde-86bc61bab72a

STIX ID: report--581ac738-504d-58e2-9fde-86bc61bab72a

Feed Name: cybersecurityNews.com

Threat Score
65/100

Date Published: 2026-03-30

Date Updated: 2026-04-21

Author: Abinaya

...
...

**Prompt poaching**: security researchers uncovered malicious browser extensions that silently monitor AI assistant tabs, scrape or intercept user prompts and AI responses, and exfiltrate sensitive data to attacker-controlled servers; attackers have distributed cloned extensions and pushed updates to compromised legitimate extensions, exposing users and organizations to intellectual property loss, targeted phishing, and identity theft, and defenders are advised to enforce centralized extension controls, prefer official clients, and monitor outbound traffic.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.