Vai al contenuto principale

#malwareanalysis

🔍 New analysis: an Italian phishing campaign abusing Chrome Native Messaging to escape browser sandbox restrictions.

Attack chain:

Invoice phishing

Altro...

🔍 New analysis: an Italian phishing campaign abusing Chrome Native Messaging to escape browser sandbox restrictions.

Attack chain:

Invoice phishing → obfuscated JS → DLL sideloading → malicious Chrome extension → Native Messaging Host → PowerShell execution.

Legitimate technologies chained together to turn Chrome into a backdoor.

📌 https://www.d3lab.net/breaking-out-of-chromes-sandbox-a-native-messaging-backdoor-observed-in-italy/

#cybersecurity #chrome #threatintelligence #browsersecurity #malwareanalysis #cti

0 0 0