Microsoft Edge Stores Passwords in Process Memory, Posing Enterprise Risk
2026-05-05T20:51:49Z•2436fa69316e1cc7f65dc114a809befa3f878823635195bc18d6d7cc843b89c5
aptauthentication-bypasscpanelcredentialsexploit-activityglasswormlazarus-group','bluenoroff','unc6692'microsoft-edgenpmpassword-theftphantomrpcphishingprivilege-escalationproof-of-conceptransomwarermm-toolssapsilver-foxsupply-chainteampcpvectvs-code-extensionsvulnerabilitieswiperzero-day
What happened
A batch of DarkReading headlines highlights multiple active, high-risk threats: Microsoft Edge is reportedly storing passwords in process memory with a proof-of-concept exploit that allows an attacker with admin privileges to steal credentials, posing enterprise-wide credential-theft risk. Other critical issues include a disclosed authentication-bypass flaw in cPanel with multiple PoCs and suspected zero-day exploitation, an unpatched PhantomRPC Windows privilege-escalation weakness, and broad supply-chain and malware activity (TeamPCP npm/SAP compromises, GlassWorm VS Code extension campaign,
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- 2436fa69316e1cc7f65dc114a809befa3f878823635195bc18d6d7cc843b89c5
- Enrichment time
- 2026-05-05T20:51:49Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.