logo

Experts Sound Alarm Over “Prompt Poaching” Browser Extensions

ID: 02d24020-0e93-5f85-8d53-2d95c7a8bea3

STIX ID: report--02d24020-0e93-5f85-8d53-2d95c7a8bea3

Feed Name: Infosecurity Magazine (News)

Threat Score
65/100

Date Published: 2026-03-25

Date Updated: 2026-04-22

...
...

Security researchers observed dozens of incidents where malicious or trojanized Chrome extensions silently monitored AI/chat sessions (via API interception or DOM scraping) to collect and exfiltrate user prompts and responses; attackers used impersonation of legitimate extensions and turning legitimate extensions malicious after gaining users. The report warns of risks to intellectual property and sensitive data, cites instances of large user impact, and recommends centrally managing and auditing browser extensions, reviewing permissions, and restricting installation to approved add-ons.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.