Nati Tal from Guardio Labs stated, 'This case study not only highlights the perennial clash between productivity and security but also provides a fascinating glimpse into the tactics used by modern threat actors operating just below the radar.'
The attack known as CrossBarking allowed a malicious extension published on the Chrome Web Store to exploit an Opera flaw, gaining unauthorized access to private APIs.
Opera has addressed the security flaw as of September 24, 2024, emphasizing the ongoing need for vigilance as vulnerabilities continue to be discovered.
Guardio Labs revealed a new attack technique exploited by malicious actors, emphasizing how several Opera-owned subdomains could gain unauthorized access to private browser APIs.
Collection
[
|
...
]