Security News

When Good Extensions Go Bad: Takeaways from the Campaign Targeting Browser Extensions
2024-12-30 10:40

News has been making headlines over the weekend of the extensive attack campaign targeting browser extensions and injecting them with malicious code to steal user credentials. Currently, over 25...

QR codes bypass browser isolation for malicious C2 communication
2024-12-08 15:27

Mandiant has identified a novel method to bypass contemporary browser isolation technology and achieve command-and-control C2 operations. [...]

Mozilla really wants you to set Firefox as default Windows browser
2024-12-02 13:48

In an effort to turn the tide, Mozilla is testing a fresh approach that could persuade more people to switch their default browser on Windows during the installation of the browser. [...]

Mozilla really wants you to easily set Firefox as default Windows browser
2024-12-02 13:48

Mozilla is testing a fresh approach that could persuade more people to switch their default browser on Windows. [...]

Comprehensive Guide to Building a Strong Browser Security Program
2024-11-13 11:00

The rise of SaaS and cloud-based work environments has fundamentally altered the cyber risk landscape. With more than 90% of organizational network traffic flowing through browsers and web...

Opera Browser Fixes Big Security Hole That Could Have Exposed Your Information
2024-10-30 13:05

A now-patched security flaw in the Opera web browser could have enabled a malicious extension to gain unauthorized, full access to private APIs. The attack, codenamed CrossBarking, could have made...

Microsoft Reveals macOS Vulnerability that Bypasses Privacy Controls in Safari Browser
2024-10-18 05:42

Microsoft has disclosed details about a now-patched security flaw in Apple's Transparency, Consent, and Control (TCC) framework in macOS that has likely come under exploitation to get around a...

Firefox Zero-Day Under Attack: Update Your Browser Immediately
2024-10-10 04:24

Mozilla has revealed that a critical security flaw impacting Firefox and Firefox Extended Support Release (ESR) has come under active exploitation in the wild. The vulnerability, tracked as...

Fake browser updates spread updated WarmCookie malware
2024-10-02 18:22

A new 'FakeUpdate' campaign targeting users in France leverages compromised websites to show fake browser and application updates that spread a new version of the WarmCookie malware. [...]

Arc browser launches bug bounty program after fixing RCE bug
2024-10-01 22:33

The Browser Company has introduced an Arc Bug Bounty Program to encourage security researchers to report vulnerabilities to the project and receive rewards. [...]