Cybersecurity researchers have disclosed details of a complex Chromiumbased postexploitation toolkit called PEEP that masquerades as a bookmarks extension for the web browser. "Requiring prior administrative or code execution access, its installer injects the extension directly into ChromeEdge profiles, bypassing Web Store checks and user prompts by forging Chromium's own Secure Preferences.📖 Read more.
🔗 Via "The Hacker News"
----------
👁️ Seen on @cibsecurity