Information security
fromThe Hacker News
5 days agoClaude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any Website
A vulnerability in Anthropic's Claude Chrome Extension allowed attackers to inject malicious prompts without user interaction, compromising browser security.