this browser hack can steal everything
Matt Johansen
@vulnerableuAbout
My mission is to leave the internet a more secure place than I found it. My name is Matt Johansen. I'm a cybersecurity pro, ex-CISO, and been doing this most of 2 decades. From that intention came this newsletter, podcast, and Youtube channel. What you can expect to enjoy: - Stories from the front lines of the top practitioners in cybersecurity - Proven systems and frameworks to secure your brand - Ways to explore our vulnerabilities together in order to come out stronger and more resilient - Top Security news from around the world and what it means for you - Being a part of a community of like minded individuals sharing our experiences for the benefit of us all. That sound fun? Make sure you're subscribed to get my latest insights!
Video Description
Breaking down this insane Polymorphic Browser Extension hack I demo that showcases a sophisticated technique involving polymorphic browser extensions. This method highlights the potential risks posed by browser extensions with extensive permissions, demonstrating how a malicious extension can masquerade as a legitimate one like 1Password to steal sensitive information. 00:00 Introduction to a Jaw-Dropping Hacking Demo 00:42 Understanding Polymorphic Extensions 02:04 Phases of the Attack 03:40 Live Demo of the Attack 06:36 Personal History and Early Research 10:09 Real-World Examples and Implications 12:46 Security Recommendations and Conclusion The Polymorphic Extension research - https://labs.sqrx.com/polymorphic-extensions-dd2310006e04 My 2011 BlackHat talk - https://youtu.be/KiE6VNjW8ic?si=AijtpDbuatMA2rAR MY OTHER SOCIALS 🌎Website / Blog https://www.vulnu.com/ 📰Newsletter / https://www.vulnu.com/subscribe/ 📷 Instagram / https://www.instagram.com/mattjayy 🐦Twitter / https://x.com/mattjay 🔗LinkedIn / https://www.linkedin.com/in/matthewjohansen/ 🦋 Bsky / https://bsky.app/profile/mattjay.com ABOUT ME In case we haven’t met yet, I’m your friendly neighborhood security guy 👋 I'm a computer security veteran who has helped defend startups, the biggest financial companies in the world, and everything in between. Through my podcast, free newsletter, and YouTube channel, I bring you curated cyber security news and personal and professional growth with a mental health cherry on top.
Secure Your Devices Now
AI-recommended products based on this video

IPROKKO Laptop 14 inch Privacy Screen Filter for Hp/Dell/Thinkpad/Lenovo/Samsung/Asus/Sony, 16:9 Aspect Ratio Removable Anti Blue Light Glare Protector, 14 in Privacy Shield

Logitech K250 Bluetooth Keyboard with Numpad, Easy Connectivity, Compact Wireless Keyboard Made with Recycled Plastic, Spill-Resistant, Comfortable Keys - Windows/MacOS - Graphite

Logitech K400 Plus Wireless Touch TV Keyboard With Easy Media Control and Built-in Touchpad, HTPC Keyboard for PC-connected TV, Windows, Android, Chrome OS, Laptop, Tablet - Black

Anker 332 USB-C Hub (5-in-1) with 4K HDMI Display, 5Gbps - and 2 5Gbps USB-A Data Ports and for MacBook Pro, MacBook Air, Dell XPS, Lenovo Thinkpad, HP Laptops and More




















