Malware steals Chrome session cookies to take over your accounts

2026-06-26T20:51:54Z506ececddbcd8ce7920086401b09adf44d4bc29298544b8eab9e76c0e3098ae3
account-takeoverarystinger-botnetbeats-studio-budsbluetoothbrowser-session-hijackchrome-extensionchrome-vulnerabilitiescritical-vulnerabilityd-linkdata-breachdomain-renewal-scamffmpegmicrosoft-defenderparcel-mulephishingpixelsmashrogueplanetsandbox-escapescamssession-cookie-theftshinyhunterssocgholishunpatched-vulnerabilityvideo-exploitwebgl

What happened

The feed highlights multiple active threats and high-severity vulnerabilities. A phishing campaign installs a malicious Chrome extension that steals Chrome session cookies to hijack accounts and compromise Windows devices. Google released a Chrome update fixing 18 vulnerabilities (including four critical flaws and two WebGL sandbox-escape bugs). Researchers disclosed a critical FFmpeg ‘PixelSmash’ flaw that can weaponize video files, and Microsoft is working on a fix for an unpatched Defender flaw (RoguePlanet) that can grant full PC control. Other notable items: thousands of D-Link routers co

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
506ececddbcd8ce7920086401b09adf44d4bc29298544b8eab9e76c0e3098ae3
Enrichment time
2026-06-26T20:51:54Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.