EDGE EXTENSION WEAPONIZED TO DEPLOY RANSOMWARE
■ AI-SUMMARIZED FROM 1 SOURCE ▸ TIMELINE
A malicious Microsoft Edge extension called 'Edgecution' has been exploited to bypass browser security and install a Python-based backdoor. The attack demonstrates how native messaging can serve as a bridge from browser extensions to system-level malware.
■ MORE FROM THE SECURITY DESK
The FCC is considering requiring identification for prepaid phone purchases, a shift that would eliminate anonymous phone use. Privacy advocates and domestic violence organizations are opposing the plan.
A new website is tracking which major companies have adopted passkeys, revealing that 24% of the world's most popular websites still lack support for the passwordless authentication method.
Law enforcement agencies worldwide have simultaneously disrupted two widely used cybercrime platforms in a coordinated operation dubbed "Operation Endgame," striking at the infrastructure supporting criminal activity online.
Mandiant has detailed how attackers exploited a Cisco Catalyst SD-WAN vulnerability (CVE-2026-20245) in zero-day attacks to gain root access and establish rogue administrator accounts on compromised devices.