Researcher Shows Edge Browser Stores Saved Passwords in Plaintext

2026-05-07T20:51:46Z5bbc3e8e5e863900883418a1658780dd2b44361c0f58a97d42d731379601c1e4
ai-evasionai-generated-codeai-modelapplication-securitycredentials-theftcvss-10data-breachedgegeminigoogle-chromehidden-textinstructuremicrosoftosintoutdated-softwarepasswords-in-memoryphishingransomware-riskrceshinyhunterssupply-chainvimeo

What happened

Multiple high-risk security developments: researcher Tom Rønning found Microsoft Edge loads all saved passwords into system memory as cleartext, allowing theft via memory scraping; a researcher alleges Google Chrome silently installs a 4GB Gemini Nano AI model on user devices (privacy/consent risk); Google patched a CVSS 10 Gemini CLI vulnerability that enabled GitHub issue-based prompt-injection leading to RCE and full supply-chain compromise; outdated maintenance software continues to raise ransomware exposure; scammers are using invisible/hidden text to bypass AI email filters; ShinyHunters

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
hackread
Record identifier
5bbc3e8e5e863900883418a1658780dd2b44361c0f58a97d42d731379601c1e4
Enrichment time
2026-05-07T20:51:46Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.