Researchers Trick AI Browsers Into Leaking Credentials
2026-06-24T20:52:16Z•0fd4157c5bc70d8d043ec35dc9505a9dccd8b2bd1915384795fdc84487df416c
AI-abuseai-browser-exploitamadeyapple-a12-a13aws-continuumedr-bypassfortibleedfortinetgentlekillerinfostealerklue-breachlookalike-packagemacOS-backdoornation-state-activitynorth-koreanpm-malwareoauth-token-theftopenai-daybreakoperation-endgameprompt-injectionransomwarestealcsupply-chain-attackunpatchable-bootrom
What happened
A cluster of high-impact cyber developments: researchers bypassed AI browser guardrails to exfiltrate credentials and multiple reports show prompt‑injection being used offensively (including a macOS 'Gaslight' backdoor that evades AI triage). Law‑enforcement-led Operation Endgame disrupted infostealer infrastructure (StealC, Amadey) and removed SocGholish from thousands of sites, while Europol seized domains and servers. Nation‑state activity and supply‑chain attacks continue (Microsoft links the Mastra AI supply‑chain compromise to North Korean group Sapphire Sleet). Multiple large breaches/v
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- infosecurity_magazine
- Record identifier
- 0fd4157c5bc70d8d043ec35dc9505a9dccd8b2bd1915384795fdc84487df416c
- Enrichment time
- 2026-06-24T20:52:16Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.