Fresh phishing kits and malware now register attacker-controlled Google passkeys that survive password resets and session revocation. Unit 42's Pass-ta-key techniques extract master encryption secrets from Chrome memory. Combined, they show passkeys defeat remote phishing but falter against local compromise. Organizations must audit credentials far beyond simple resets.
| # | Наименование новости | Тональность | Информативность | Дата публикации |
|---|---|---|---|---|
| 1 | Phishing Kit Sells Rogue Passkeys for $10K to Lock In Hacked Accounts | 0 | 12.45 | 21-08-2026 |
| 2 | Pass-ta-key Takes Advantage Of Some Assumptions When Grabbing Your Windows Passkeys | 0 | 9.86 | 11-08-2026 |
| 3 | Hackers target PE firms with old-school vishing attacks - Google researchers | 0 | 12.12 | 10-08-2026 |
| 4 | Мошенники начали маскировать вирусы под ChatGPT и сервисы Google | -2 | 6 | 11-06-2026 |
| 5 | The Modern Attack Chain: Rethinking Google Workspace Security in the Age of AI | 0 | 7 | 14-08-2026 |
| 6 | Google’s newest sign-in method asks you to look at the camera | 0 | 9.5 | 24-07-2026 |
| 7 | Security Researchers Fall Prey to Sophisticated Impersonation in Bogus Crypto Conference Scam | 0 | 9.45 | 22-08-2026 |
| 8 | Russian Hackers Bypass Signal and WhatsApp Encryption by Targeting Backup Keys | 0 | 8 | 29-06-2026 |
| 9 | The surprising risks of online passkeys | 0 | 6.25 | 13-08-2026 |
| 10 | Нетайные переписки: «Лаборатория Касперского» выявила инструмент, позволяющий злоумышленникам получать доступ к корпоративной почте в Gmail | 0 | 7 | 30-06-2026 |