Researchers Trick AI Browsers Into Leaking Credentials

2026-06-24T20:52:16Z0fd4157c5bc70d8d043ec35dc9505a9dccd8b2bd1915384795fdc84487df416c
AI-abuseai-browser-exploitamadeyapple-a12-a13aws-continuumedr-bypassfortibleedfortinetgentlekillerinfostealerklue-breachlookalike-packagemacOS-backdoornation-state-activitynorth-koreanpm-malwareoauth-token-theftopenai-daybreakoperation-endgameprompt-injectionransomwarestealcsupply-chain-attackunpatchable-bootrom

What happened

A cluster of high-impact cyber developments: researchers bypassed AI browser guardrails to exfiltrate credentials and multiple reports show prompt‑injection being used offensively (including a macOS 'Gaslight' backdoor that evades AI triage). Law‑enforcement-led Operation Endgame disrupted infostealer infrastructure (StealC, Amadey) and removed SocGholish from thousands of sites, while Europol seized domains and servers. Nation‑state activity and supply‑chain attacks continue (Microsoft links the Mastra AI supply‑chain compromise to North Korean group Sapphire Sleet). Multiple large breaches/v

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
infosecurity_magazine
Record identifier
0fd4157c5bc70d8d043ec35dc9505a9dccd8b2bd1915384795fdc84487df416c
Enrichment time
2026-06-24T20:52:16Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Researchers Trick AI Browsers Into Leaking Credentials · Baitaphish