From a Sophisticated Browser-Extension Supply-Chain Compromise to a VibeCoded Twist: A Chrome Extension as the Initial Access Vector for a Broader Malware Chain (opens in new tab)
Independent technical analysis of a Chrome extension compromise, fake update chain, and Windows-stage malware activity.
Read the original article