logo

SquareX Shows AI Browsers Fall Prey to OAuth Attacks, Malware Downloads and Malicious Link Distribution

ID: 0a93f81c-d0e4-544b-82fd-3c9eb41697a0

STIX ID: report--0a93f81c-d0e4-544b-82fd-3c9eb41697a0

Feed Name: Security Ledger

Threat Score
55/100

Date Published: 2025-10-09

Date Updated: 2026-04-26

...
...

SquareX published research showing AI-enabled browsers can be tricked into performing malicious actions — including OAuth token compromise leading to email and Google Drive exfiltration, distribution of malicious links via calendar invites, and downloading malware — and warns that existing enterprise controls (EDR, SASE/SSE) lack the visibility to distinguish human versus agentic browser actions; the company urges browser-native defenses and industry collaboration.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.