logo

The Browser Defense Playbook: Stopping the Attacks That Start on Your Screen

ID: a608d3bb-a7c4-5281-b961-6675117a4005

STIX ID: report--a608d3bb-a7c4-5281-b961-6675117a4005

Feed Name: Palo Alto Networks Unit 42

Date Published: 2025-12-03

Date Updated: 2026-04-28

Author: Unit 42

...
...

The report explains how the enterprise browser has become a primary attack surface due to cloud adoption and remote work, detailing common techniques such as phishing, malicious extensions, session hijacking, cross-site scripting, and drive-by downloads, compounded by weak policies and unmanaged personal devices. It recommends extending zero trust to the browser with MFA, least privilege, contextual access controls, continuous session monitoring, strict extension allow-listing, and behavioral analysis of encrypted traffic, and concludes by promoting Prisma Browser integrated with Prisma Access for authenticated, filtered, and malware-protected web access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.