EDGE EXTENSION WEAPONIZED TO DEPLOY RANSOMWARE
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
A malicious Microsoft Edge extension called 'Edgecution' has been exploited to bypass browser security and install a Python-based backdoor. The attack demonstrates how native messaging can serve as a bridge from browser extensions to system-level malware.
■ MORE FROM THE SECURITY DESK
A new website is tracking which major companies have adopted passkeys, revealing that 24% of the world's most popular websites still lack support for the passwordless authentication method.
Law enforcement agencies worldwide have simultaneously disrupted two widely used cybercrime platforms in a coordinated operation dubbed "Operation Endgame," striking at the infrastructure supporting criminal activity online.
Mandiant has detailed how attackers exploited a Cisco Catalyst SD-WAN vulnerability (CVE-2026-20245) in zero-day attacks to gain root access and establish rogue administrator accounts on compromised devices.
Anthropic has accused Alibaba of orchestrating large-scale unauthorized access to its Claude AI model through approximately 25,000 fraudulent accounts, according to a letter sent to US officials. The Chinese tech giant allegedly accessed Claude 28.8 million times between April and June.