Malware steals Chrome session cookies to take over your accounts
2026-06-26T20:51:54Z•506ececddbcd8ce7920086401b09adf44d4bc29298544b8eab9e76c0e3098ae3
account-takeoverarystinger-botnetbeats-studio-budsbluetoothbrowser-session-hijackchrome-extensionchrome-vulnerabilitiescritical-vulnerabilityd-linkdata-breachdomain-renewal-scamffmpegmicrosoft-defenderparcel-mulephishingpixelsmashrogueplanetsandbox-escapescamssession-cookie-theftshinyhunterssocgholishunpatched-vulnerabilityvideo-exploitwebgl
What happened
The feed highlights multiple active threats and high-severity vulnerabilities. A phishing campaign installs a malicious Chrome extension that steals Chrome session cookies to hijack accounts and compromise Windows devices. Google released a Chrome update fixing 18 vulnerabilities (including four critical flaws and two WebGL sandbox-escape bugs). Researchers disclosed a critical FFmpeg ‘PixelSmash’ flaw that can weaponize video files, and Microsoft is working on a fix for an unpatched Defender flaw (RoguePlanet) that can grant full PC control. Other notable items: thousands of D-Link routers co
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 506ececddbcd8ce7920086401b09adf44d4bc29298544b8eab9e76c0e3098ae3
- Enrichment time
- 2026-06-26T20:51:54Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.