FeedMalwareMalicious Edge extension abuses Native Messaging as bridge t...
MalwareBleeping Computer
8.5CRITICAL

Malicious Edge extension abuses Native Messaging as bridge to malware

📅 24 June 2026 at 20:58 UTC📰 Bleeping ComputerView original source ↗
Malicious Edge extension abuses Native Messaging as bridge to malware

A malicious Microsoft Edge extension dubbed 'Edgecution' has been used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor. [...]

🤖 AI BriefingAuto-generated threat analysis
🔍Threat Overview

A malicious Microsoft Edge extension, 'Edgecution', was used in a ransomware attack to escape the browser sandbox and deploy a Python-based backdoor, demonstrating evolving sophistication of threat actors tied to ransomware operations.

⚙️Technical Details
Affected Systems
Microsoft Edge
Attack Vectors
Native Messaging protocolFake Microsoft update siteMalicious Edge extension
💥Impact Assessment
Severity: critical
Who Is at Risk
Employees of organizations using Microsoft Edge, particularly those in the finance and healthcare sectors.
🛡️Recommended Actions
1Strengthen monitoring of browser extensions
2Enforce strict controls over native messaging host configurations
3Regularly update and patch software to prevent exploitation of known vulnerabilities
📦Affected Products
Microsoft EdgeWindows operating system

Read the full article

This is a curated summary. The complete article is available at Bleeping Computer.

Read on Bleeping Computer
← Back to feed