This nightmare incident shows why you really shouldn’t store passwords in your browser

Tajammul Pangarkar
Tajammul Pangarkar

Updated · Dec 29, 2021

SHARE:

Scoop.market.us is supported by its audience. When you purchase through links on our site, we may earn an affiliate commission. Learn more.
close
Advertiser Disclosure

At Market.us Scoop, we strive to bring you the most accurate and up-to-date information by utilizing a variety of resources, including paid and free sources, primary research, and phone interviews. Our data is available to the public free of charge, and we encourage you to use it to inform your personal or business decisions. If you choose to republish our data on your own website, we simply ask that you provide a proper citation or link back to the respective page on Market.us Scoop. We appreciate your support and look forward to continuing to provide valuable insights for our audience.

An unnamed company was recently breached after an employee stored their corporate account password in their web browser, a new report suggests.

According to research from security company AhnLab, the employee was working from home on a device shared with other household members, which was already infected with Redline Stealer, an infostealing malware.

Although the computer was equipped with antivirus software, the malware was able to evade detection, before stealing the passwords stored in the victim's browser.

Password snafu

In a bid to protect their corporate network from remote workers with infected devices, the company in question provided employees with a VPN, so that they could access their work files securely.

However, this particular employee stored the login credentials for the VPN in their browser, which was later infiltrated by the malware. Three months later, the company was breached using these credentials.

Given that Redline Stealer malware is being sold online (for roughly $150 – $200), it’s very hard to say who is behind this specific attack.

Cybersecurity experts from AhnLab have warned users to refrain from storing passwords in the browser, despite the convenience. A password manager is a much better option, they say, especially when paired with a security key or another form of multi-factor authentication.

Source Link This nightmare incident shows why you really shouldn’t store passwords in your browser

SHARE:
Tajammul Pangarkar

Tajammul Pangarkar

Tajammul Pangarkar is a CMO at Prudour Pvt Ltd. Tajammul longstanding experience in the fields of mobile technology and industry research is often reflected in his insightful body of work. His interest lies in understanding tech trends, dissecting mobile applications, and raising general awareness of technical know-how. He frequently contributes to numerous industry-specific magazines and forums. When he’s not ruminating about various happenings in the tech world, he can usually be found indulging in his next favorite interest - table tennis.