Tre tecniche di Unit 42 colpiscono Google Password Manager in Chrome su Windows: un malware senza privilegi ottiene risposte di autenticazione valide, registra una propria chiave di verifica e legge in memoria il segreto che cifra ogni passkey

Unit 42 details three Chrome passkey attack paths that could let Windows malware bypass verification or recover synced private keys after compromise.

Security researchers have discovered three attacks that allow malware on already-compromised Windows devices to abuse Google Password Manager's synced passkeys to take over…