Zoom Stealer: Browser extensions harvesting corporate intelligence
A newly discovered campaign, called Zoom Stealer, is affecting 2.2 million Chrome, Firefox, and Microsoft Edge users through 18 browser extensions that collect online meeting-related data like URLs, IDs, topics, descriptions, and embedded passwords. The campaign is attributed to a single threat actor tracked as DarkSpectre, believed to be a China-linked threat actor. The collected data can be used for corporate espionage and sales intelligence, potentially enabling social engineering attacks or selling meeting links to competitors.