PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Executionhttps://thehackernews.com/2026/09/peep-turns-chrome-and-edge-into-post.html
Cybersecurity researchers have disclosed details of a complex Chromium-based post-exploitation toolkit called PEEP that masquerades as a bookmarks extension for the web browser. "Requiring prior administrative or code execution access, its installer injects the extension directly into Chrome/Edge profiles, bypassing Web Store checks and user prompts by forging Chromium's own Secure Preferences