Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

It's time to treat browser extensions like supply chain attack vectors

Summary

The Vercel breach began with a browser extension: an infostealer on a Context.ai employee's machine exposed OAuth tokens. Aikido says treat extensions as supply chain attack vectors.
Published
Collected

original ↗

Related coverage

back