Skip to content
  • Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form
Malware Threats to Google Password Manager Accounts Revealed

Malware Threats to Google Password Manager Accounts Revealed

Posted on August 3, 2026 By CWS

Recent research highlights vulnerabilities in Google Password Manager that allow malware to bypass passkey protections on Windows systems. These findings, reported by Unit 42, identify three attack strategies targeting the Google Password Manager within Chrome, potentially compromising user accounts without visible indicators on the victim’s device.

Understanding the Attack Strategies

Unit 42 has identified three critical attack paths: Pass-ta-key, Silver Pass-ta-key, and Golden Pass-ta-key. These strategies exploit how Chrome handles passkey storage, device re-enrollment, and user verification. The attacks do not compromise the underlying cryptography but instead manipulate the code managing passkeys.

The first method, Pass-ta-key, involves accessing Chrome’s device identity key and manipulating Windows Cryptography API calls to sign unauthorized requests. This process bypasses user verification by exploiting a vulnerability in how Chrome handles TPM keys.

Exploring the Silver Pass-ta-key Path

The Silver Pass-ta-key attack focuses on forcing Chrome to re-enroll a device, allowing attackers to register their own user-verification key. This method leverages a gap in security checks where the system fails to verify if a newly registered key originated from secure hardware. Consequently, attackers can conduct future logins without the victim’s device.

Despite these vulnerabilities, the report does not specify if these issues have been addressed in the latest Chrome updates. The research relies on existing Chromium sources to validate some aspects of these vulnerabilities.

Golden Pass-ta-key and Its Implications

Golden Pass-ta-key targets the Security Domain Secret (SDS) within Chrome. Attackers can extract the SDS, thereby decrypting synced passkey private keys. This attack path is particularly concerning as it allows persistent access to user accounts.

Although some mitigations have been implemented, such as eBay’s enforcement of the user verification flag, the vulnerability remains significant. The report suggests that further security enhancements are needed, including hardware attestation checks and securing client memory against such exposures.

As of the latest updates, there is no confirmation on whether all reported vulnerabilities have been resolved. Users and service providers are advised to enforce stringent security measures, such as requiring user verification and validating newly registered keys.

In conclusion, the research emphasizes the importance of robust security practices in mitigating these vulnerabilities. Continuous updates and user education are crucial in safeguarding against potential threats to Google Password Manager accounts.

The Hacker News Tags:Authentication, Chrome vulnerabilities, Cybersecurity, Google Password Manager, Malware, passkey protection, security research, TPM, Unit 42, user verification

Post navigation

Previous Post: Critical TP-Link Router Flaw Allows Remote Attacks
Next Post: Brinks Home Data Breach Unveiled by Hackers

Related Posts

Protect AI Agents from Legacy Infrastructure Surprises Protect AI Agents from Legacy Infrastructure Surprises The Hacker News
Critical Check Point VPN Vulnerability Exploited Critical Check Point VPN Vulnerability Exploited The Hacker News
Microsoft Expands Sentinel Into Agentic Security Platform With Unified Data Lake Microsoft Expands Sentinel Into Agentic Security Platform With Unified Data Lake The Hacker News
WIRTE Leverages AshenLoader Sideloading to Install the AshTag Espionage Backdoor WIRTE Leverages AshenLoader Sideloading to Install the AshTag Espionage Backdoor The Hacker News
SonicWall SSL VPN Flaw and Misconfigurations Actively Exploited by Akira Ransomware Hackers SonicWall SSL VPN Flaw and Misconfigurations Actively Exploited by Akira Ransomware Hackers The Hacker News
Two CVSS 10.0 Bugs in Red Lion RTUs Could Hand Hackers Full Industrial Control Two CVSS 10.0 Bugs in Red Lion RTUs Could Hand Hackers Full Industrial Control The Hacker News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Malware Exploits Google Passkey Vulnerabilities
  • Liechtenstein’s Company Register Data Breach Exposed
  • INC Ransomware Exploits SonicWall Vulnerabilities
  • Critical Vulnerability in DNA Software Threatens Data Integrity
  • Brinks Home Data Breach Unveiled by Hackers

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • November 2025
  • October 2025
  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Malware Exploits Google Passkey Vulnerabilities
  • Liechtenstein’s Company Register Data Breach Exposed
  • INC Ransomware Exploits SonicWall Vulnerabilities
  • Critical Vulnerability in DNA Software Threatens Data Integrity
  • Brinks Home Data Breach Unveiled by Hackers

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Copyright © 2026 Cyber Web Spider Blog – News.

Powered by PressBook Masonry Dark