importantSYS.SOURCE: The Hacker News• 2026-09-16T20:06:44+05:30
Browser Extension Vulnerability Exploits AI Assistants in Multiple Chromium-Based Browsers
A browser extension vulnerability allows unauthorized control of AI assistants in multiple Chromium-based browsers by exploiting trusted pages and network permissions. Security researchers disclosed the issue, with some vendors having already issued patches while others remain unresolved.
Security researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromium-based products: Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and the Claude in Chrome extension.
Once the extension was installed, it could access each product's built-in AI with a single click. On Comet, Edge,
*** END OF TRANSMISSION ***