Researcher Shows Edge Browser Stores Saved Passwords in Plaintext
2026-05-07T20:51:46Z•5bbc3e8e5e863900883418a1658780dd2b44361c0f58a97d42d731379601c1e4
ai-evasionai-generated-codeai-modelapplication-securitycredentials-theftcvss-10data-breachedgegeminigoogle-chromehidden-textinstructuremicrosoftosintoutdated-softwarepasswords-in-memoryphishingransomware-riskrceshinyhunterssupply-chainvimeo
What happened
Multiple high-risk security developments: researcher Tom Rønning found Microsoft Edge loads all saved passwords into system memory as cleartext, allowing theft via memory scraping; a researcher alleges Google Chrome silently installs a 4GB Gemini Nano AI model on user devices (privacy/consent risk); Google patched a CVSS 10 Gemini CLI vulnerability that enabled GitHub issue-based prompt-injection leading to RCE and full supply-chain compromise; outdated maintenance software continues to raise ransomware exposure; scammers are using invisible/hidden text to bypass AI email filters; ShinyHunters
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- hackread
- Record identifier
- 5bbc3e8e5e863900883418a1658780dd2b44361c0f58a97d42d731379601c1e4
- Enrichment time
- 2026-05-07T20:51:46Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.