CybersecurityDev6 min reading time

Google Password Manager Attacks Could Let Malware Hijack Passkey-Protected Accounts

The Hacker News
Read full post
Unit 42 researchers revealed three attack methods targeting Google Password Manager's passkey system on Windows, allowing malware to access accounts without user verification. These exploits do not break cryptography but abuse Chrome's key storage and device re-enrollment processes. The vulnerabilities require prior malware presence on the device and affect Chrome on TPM-equipped Windows systems.

More on this story


More in Cybersecurity

Cybersecurity10 min read

Anthropic Details Disrupted Claude Misuse Across Seven Harm Areas

Covered by 4 sources
Cybersecurity4 min read

Sam Altman met with top power utilities about securing the electrical grid. He offered one possible solution: OpenAI's cyber services.

Covered by 2 sources
Cybersecurity6 min read

Anthropic reveals rogue AI agents hate CAPTCHAs, just like you

TechCrunch