logo

Google Chrome Update Disrupts Infostealer Cookie Theft

ID: e6b44685-1dfd-5d72-8ff0-92310b24394a

STIX ID: report--e6b44685-1dfd-5d72-8ff0-92310b24394a

Feed Name: HackRead

Threat Score
70/100

Date Published: 2026-04-11

Date Updated: 2026-04-22

Author: Deeba Ahmed

...
...

Google has released Device Bound Session Credentials (DBSC) in Chrome for Windows to prevent account hijacking via session-cookie theft by infostealer malware. DBSC ties login sessions to device-resident keys stored in TPM/Secure Enclave so stolen cookies cannot be reused, and Google reports reduced successful attacks during origin trials; the report also highlights the large scale and impact of infostealers that have previously affected millions of devices and high-profile organisations.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.