Tuesday, 28 Jul 2026
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • DMCA
logo logo
  • World
  • Politics
  • Crime
  • Economy
  • Tech & Science
  • Sports
  • Entertainment
  • More
    • Education
    • Celebrities
    • Culture and Arts
    • Environment
    • Health and Wellness
    • Lifestyle
  • 🔥
  • Trump
  • House
  • White
  • ScienceAlert
  • VIDEO
  • man
  • Trumps
  • Season
  • star
  • Years
Font ResizerAa
American FocusAmerican Focus
Search
  • World
  • Politics
  • Crime
  • Economy
  • Tech & Science
  • Sports
  • Entertainment
  • More
    • Education
    • Celebrities
    • Culture and Arts
    • Environment
    • Health and Wellness
    • Lifestyle
Follow US
© 2024 americanfocus.online – All Rights Reserved.
American Focus > Blog > Tech and Science > Browser-based attacks hit 95% of enterprises — and traditional security tools never saw them coming
Tech and Science

Browser-based attacks hit 95% of enterprises — and traditional security tools never saw them coming

Last updated: January 26, 2026 11:40 am
Share
Browser-based attacks hit 95% of enterprises — and traditional security tools never saw them coming
SHARE

The cybersecurity landscape is evolving rapidly, with browser-based attacks becoming increasingly prevalent. A recent Omdia study revealed that 95% of organizations experienced browser-based attacks last year, despite having robust security measures in place. Three high-profile campaigns in the past year have shed light on the severity of the threat posed by browser-based attacks.

ShadyPanda, Cyberhaven, and Trust Wallet are just a few examples of how attackers are exploiting vulnerabilities within browsers to infiltrate organizations and steal sensitive data. These attacks are not triggered by traditional security alerts, making them difficult to detect using conventional security tools.

According to Sam Evans, the CISO of Clearwater Analytics, the majority of employees spend a significant portion of their day using a web browser. This makes the browser a high-risk execution environment that is often overlooked as an attack surface. Modern adversaries are leveraging trusted browser sessions to bypass traditional security controls and gain access to sensitive information.

Elia Zaitsev, the CTO of CrowdStrike, highlights the shift in attacker tactics, noting that attackers are now focusing on exploiting valid identities, tokens, and access within trusted browser sessions. Traditional security architectures are ill-equipped to detect and prevent these types of attacks, as they were designed to inspect traffic before authentication, not behavior after access is granted.

The Omdia research underscores the limitations of traditional security stacks, with a significant percentage of encrypted traffic going uninspected and organizations lacking control over data shared in AI tools. The proliferation of browser extensions further complicates the security landscape, with many users unknowingly granting high-level permissions to extensions that can compromise their data.

See also  Is Bluesky Down? How to Check Service Status

Browser isolation solutions offered by companies like Menlo Security, Cloudflare, and Symantec aim to address rendering threats by executing web content in remote containers. However, these solutions do not protect against locally-run extensions with privileged access or session-based attacks that hijack authenticated tokens.

Three distinct attack patterns have emerged in recent years, including the long game, credential hijack, and API key leak. These attacks exploit vulnerabilities in browser extensions, auto-update mechanisms, and control planes to gain unauthorized access to sensitive data.

To combat these evolving threats, organizations must adopt browser-layer controls that provide visibility and control inside live browser sessions. By correlating browser behavior with identity posture, endpoint signals, and threat intelligence, organizations can detect and prevent session hijacking and data exfiltration in real-time.

Ultimately, the key to mitigating browser-based attacks lies in understanding the unique challenges posed by the modern browser environment and implementing proactive security measures that prioritize visibility and control. By treating the browser as the primary execution environment for enterprise work, organizations can enhance their cybersecurity posture and protect against emerging threats.

TAGGED:attacksBrowserbasedComingenterpriseshitSecuritytoolsTraditional
Share This Article
Twitter Email Copy Link Print
Previous Article Endometriosis, flu updates, autism research: Morning Rounds Endometriosis, flu updates, autism research: Morning Rounds
Next Article Women Who Defined Last Week’s Fashion Moments Women Who Defined Last Week’s Fashion Moments
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *


The reCAPTCHA verification period has expired. Please reload the page.

Popular Posts

The Milky Way’s black hole may be spinning at top speed

An image of Sagittarius A*, the black hole at the centre of the Milky Way…

June 16, 2025

Students Need To Learn How To Type

In today's digital age, teaching students how to type is more important than ever before.…

February 12, 2025

Viral ‘American Idol’ contestant who kissed Katy Perry slapped with extreme conditions for release after child porn conviction: report

A disturbing case has emerged featuring a former contestant from “American Idol”. Benjamin Glaze, who…

September 30, 2025

One way or another – Econlib

In 2014, Vladimir Putin executed a bold maneuver by annexing Crimea, a region that Russia…

April 24, 2025

AMD Stock Is Soaring on an OpenAI Deal, But Analysts Still Think It Can Climb 35% From Here

On Monday, AMD (AMD) shares soared close to 24% following the announcement of a new…

October 10, 2025

You Might Also Like

Visa used Mythos to hunt for bugs in its own payment network, then open-sourced the harness that made it possible
Tech and Science

Visa used Mythos to hunt for bugs in its own payment network, then open-sourced the harness that made it possible

July 28, 2026
Why Einstein’s theories of relativity make time travel possible
Tech and Science

Why Einstein’s theories of relativity make time travel possible

July 28, 2026
Xiaomi’s Redmi Note 17 Faces Price Hike – but It Could Still Be a Galaxy A27 Killer – Tech Advisor
Tech and Science

Xiaomi’s Redmi Note 17 Faces Price Hike – but It Could Still Be a Galaxy A27 Killer – Tech Advisor

July 28, 2026
A Budget Premium Tablet – Tech Advisor
Tech and Science

A Budget Premium Tablet – Tech Advisor

July 28, 2026
logo logo
Facebook Twitter Youtube

About US


Explore global affairs, political insights, and linguistic origins. Stay informed with our comprehensive coverage of world news, politics, and Lifestyle.

Top Categories
  • Crime
  • Environment
  • Sports
  • Tech and Science
Usefull Links
  • Contact
  • Privacy Policy
  • Terms & Conditions
  • DMCA

© 2024 americanfocus.online –  All Rights Reserved.

Welcome Back!

Sign in to your account

Lost your password?