Discover this podcast and so much more

Podcasts are free to enjoy without a subscription. We also offer ebooks, audiobooks, and so much more for just $11.99/month.

Attackers (ab)using Google Chrome. [Research Saturday]

Attackers (ab)using Google Chrome. [Research Saturday]

FromCyberWire Daily


Attackers (ab)using Google Chrome. [Research Saturday]

FromCyberWire Daily

ratings:
Length:
20 minutes
Released:
Feb 20, 2021
Format:
Podcast episode

Description

Guest Bojan Zdrnja of Infigo IS and a certified instructor at SANS Institute shares an incident he discovered where attackers were using a pretty novel way of exfiltrating data and using that channel for C&C communication. The code that was acquired was only partially recovered, but enough to indicate powerful features that the attackers were (ab)using in Google Chrome. The basis for this attack were malicious extensions that the attacker dropped on the compromised system.
The research can be found here:
Abusing Google Chrome extension syncing for data exfiltration and C&C
Released:
Feb 20, 2021
Format:
Podcast episode