#content-script-injection

[ follow ]
Information security
fromSecurityWeek
2 days ago

Chrome, Edge Extensions Caught Stealing ChatGPT Sessions

Malicious browser extensions stole ChatGPT session tokens by injecting content scripts into chatgpt.com, exfiltrating authorization headers and user data to remote servers.
[ Load more ]