← Back to feed
Threat Actors & CampaignsEmerging1 sourceSep 7, 2026 · 18:12via The Hacker News

PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution

Brief

Cybersecurity researchers have disclosed details of a complex Chromium-based post-exploitation toolkit called PEEP that masquerades as a bookmarks extension for the web browser.

"Requiring prior administrative or code execution access, its installer injects the extension directly into Chrome/Edge profiles, bypassing Web Store checks and user prompts by forging Chromium's own Secure Preferences

Read more on The Hacker News