< BACK TO NEWS
negativeSYS.SOURCE: The Hacker News2026-09-07T23:42:09+05:30

PEEP Exploits Chromium Browsers to Create Post-Compromise Backdoors for Host Command Execution

PEEP is a Chromium-based post-compromise toolkit that exploits Chrome and Edge browsers to create persistent backdoors, enabling host-level command execution and data exfiltration. It bypasses security measures by forging Secure Preferences and uses native messaging for extended control.

Cybersecurity researchers have disclosed details of a complex Chromium-based post-exploitation toolkit called PEEP that masquerades as a bookmarks extension for the web browser.

"Requiring prior administrative or code execution access, its installer injects the extension directly into Chrome/Edge profiles, bypassing Web Store checks and user prompts by forging Chromium's own Secure Preferences

Read original article

*** END OF TRANSMISSION ***