VoidStealer Malware Targets Chrome Data Despite Built-In Browser Protections
ID: 68167cae-7cb7-5ea9-844c-228f396547ee
STIX ID: report--68167cae-7cb7-5ea9-844c-228f396547ee
Feed Name: GBHackers
### Executive Summary Researchers reported VoidStealer, a new infostealer that bypasses Chrome’s App-Bound Encryption by attaching as a debugger to Chrome, pausing execution when the master key is loaded into memory, and extracting the plaintext key to enable session hijacking and credential theft across Chromium-based browsers; the malware is offered as MaaS, increasing its potential scale, and mitigations include avoiding storing credentials in browsers, using dedicated password managers, and employing behavioral endpoint defenses.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
