Follow the latest coverage, related explainers and connected technology stories.
An active banking operation since mid-2025 has used the KREMLIN tool to install malicious extensions on Chrome and Edge without user consent, aiming to steal passwords, tokens, sessions, and sensitive data. Elastic Security Labs identified approximately 1,515 infected systems, most of them in Brazil, and managed to disrupt the current campaign by exploiting an anti-analysis check.