SquareX Unveils Polymorphic Extensions that Morph Infostealers into Any Browser Extension – Password Managers, Wallets at Risk
ID: 9ce544d3-3e1d-5b54-bcb2-7d6be90c1ce0
STIX ID: report--9ce544d3-3e1d-5b54-bcb2-7d6be90c1ce0
Feed Name: Security Ledger
SquareX researchers disclose a new class of "polymorphic" malicious browser extensions that can impersonate any installed extension (including password managers and crypto wallets) by changing icons and UI and even temporarily disabling target extensions; this enables convincing phishing of master passwords and authorization of crypto transfers. The attack leverages standard browser features and medium-risk permissions, affects major browsers like Chrome and Edge, cannot be patched as a software bug, and prompts recommendations for browser-native runtime monitoring and controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
