Browser Exploits Wane as Users Become the Attack Surface
ID: b4a4eae4-a2d3-519f-84b9-c5f3221ae40a
STIX ID: report--b4a4eae4-a2d3-519f-84b9-c5f3221ae40a
Feed Name: Dark Reading
Attackers are shifting from direct browser exploits to abusing legitimate browser features and social-engineering to gain initial access: 70% of 2024 attacks used browser downloads, and threats include compromised extensions, OAuth misuse, credential/token theft, and emerging “browser-native ransomware.” The report highlights incidents (such as the Cyberhaven Chrome-extension compromise), targeted attacks against privileged roles and remote workers, and evaluates defenses (SWGs, CASBs, EDR, RBI, enterprise browsers and extension-based controls) while warning that attackers adapt to the weakest link in the enterprise browser ecosystem.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
