importantSYS.SOURCE: The Hacker News• 2026-09-07T13:23:04+05:30
JSCeal Malware Exploits Stolen Session Cookies to Bypass Google Authentication
JSCeal malware bypasses Google authentication by stealing session cookies and reconstructing browser sessions. It uses advanced obfuscation techniques and targets Chromium-based browsers to steal credentials and cryptocurrency data.
Cybersecurity researchers have unpacked JSCeal, a sophisticated compiled V8 JavaScript (JSC) malware with credential harvesting, surveillance, and traffic-interception capabilities.
"The payloads are protected with javascript-obfuscator, using multiple techniques including RC4-protected strings, control-flow flattening, proxy functions, and operation wrappers," Check Point Research said in a
*** END OF TRANSMISSION ***