Shadow AI Power Users: The 5% Creating Outsized Enterprise Security Risk
New research from Akamai reveals that a small fraction of enterprise employees—the top 5% of AI power users—are creating a disproportionate security…
New research from Akamai reveals that a small fraction of enterprise employees—the top 5% of AI power users—are creating a disproportionate security…
Cybersecurity researchers have uncovered a new macOS-oriented, Rust-based information stealer called AmnesiaStealer that hijacks Chromium web browsers to steal session data and…
A massive operation involving 737 free VPN and proxy extensions on the Chrome Web Store has been uncovered, primarily targeting Russian-speaking users…
Attackers compromised a JavaScript file served by advertising technology company Adform, turning it into a browser-side tool that rewrites cryptocurrency wallet addresses.…
Google has patched a record 1,442 security vulnerabilities across Chrome versions 149, 150, and 151, surpassing the total number of flaws fixed…
Push Security provides an AI-native browser security platform that detects and stops advanced browser-based attacks, including device code phishing. Their agentic threat…
Device code phishing, which abuses the OAuth 2.0 device authorization grant to steal access tokens, has rapidly evolved from a niche technique…
Nebula Security researchers have demonstrated that a single visit to a malicious webpage can compromise the Tor Browser by exploiting a patched…
Tor Browser releases incorporating vulnerable Firefox versions are affected by CVE-2026-10702, allowing compromise via a single malicious webpage visit.
Confiant, a cybersecurity firm, detailed the SourTrade malvertising campaign on July 23, 2026. The campaign uses victims' browsers to assemble malware executables…