Experts reveal Google Password Manager can be hijacked to let hackers steal passkeys and gain access to all your secrets

Chronological Source Flow
Back

AI Fusion Summary

Cybersecurity researchers at Palo Alto Networks' Unit 42 discovered three attack vectors, named Pass-TA-Key, Silver Pass-TA-Key, and Golden Pass-TA-Key. These techniques allow local malware on Windows PCs to hijack Google-synced passkeys by bypassing biometric locks and PIN prompts. This vulnerability enables hackers to steal passkeys and access sensitive secrets, undermining the security of Chrome-based passkeys, which were previously considered a safer alternative to traditional passwords for protecting user accounts and data.
Community Comments
Loading updates...
0