AI Browsers Vulnerable to OAuth Attacks, Malware and Malicious Link Distribution

Researchers have uncovered major vulnerabilities that could allow attackers to exploit AI Browsers to exfiltrate sensitive data, distribute malware and gain unauthorized access to enterprise SaaS apps  —significant news as OpenAI, Microsoft, Google and The Browser Company have announced or released their own AI browsers. Chrome and Edge alone represent 70% of the browser market share. 

You can read more details here: https://www.prnewswire.com/news-releases/squarex-shows-ai-browsers-fall-prey-to-oauth-attacks-malware-downloads-and-malicious-link-distribution-302578487.html

Davit Asatryan, VP of Research at Spin.AI, provided the following comments:

“One key to preventing browser compromise is proactively blocking OAuth and extension-based attacks, where users are misled into installing third-party tools that seem legitimate but contain exploitable gaps or malicious intent. Consistent monitoring and governed approval of third-party apps and extensions is essential, enabling IT and security teams to assess risk before deployment.”

This is the second major threat to browsers that I am covering today. The first being this one. Thus proving that you need to be really careful when you surf the Internet as the bad guys are everywhere.

Leave a Reply

Discover more from The IT Nerd

Subscribe now to keep reading and get access to the full archive.

Continue reading