BragJack Flaw Let Malicious Extensions Hijack AI Agents in Five Major Browsers
Security researchers at Forever Security disclosed a high-severity attack technique called BragJack, which allows a malicious browser extension to hijack built-in AI agents across Chrome, Edge, Opera Neon, Perplexity Comet, and Claude in Chrome. The attack exploits existing extension permissions—such as Declarative Net Request and debugger access—to weaken security policies, inject scripts, and force-send prompts to AI agents without additional user interaction. Affected products included Google Gemini, Microsoft Copilot, Opera Neon, Perplexity Comet, and Claude, with proof-of-concept demonstrations showing unauthorized access to files, emails, camera feeds, and authenticated websites. The vulnerabilities were assigned CVE-2026-0628 and CVE-2026-55945, and all affected vendors have since issued fixes. No exploitation in the wild has been reported by the cited sources.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.
Discussion (0)
Log in to join the discussion and vote.
Log in