chiprook
← Security
SecuritySeptember 16, 2026, 01:54

KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens

Elastic Security Labs disclosed Brazilian banking malware KREMLIN (group REF9334), active since at least May 2025. A malicious extension for Chrome and Edge steals credentials and session tokens, masquerading as sites of a dozen Brazilian banks.

KREMLIN Banking Malware Hijacks Chrome and Edge to Steal Credentials and Session Tokens
#Chrome#Edge
Read next
Security

WordPress Click2Shell flaw lets hackers run PHP on the server

Security

ZoomEye: Over 239,000 Citrix NetScaler Gateways Exposed Amid SAML Bypass

Security

Microsoft and Google take down $66 million RedVDS cybercrime marketplace

Security

Contagious Interview Campaign Hits 30,000 Devices, Steals $10.71M in Crypto