AI is creating a dual security challenge for organizations: attackers are using it to rapidly iterate phishing kits and bypass traditional defenses, while employees are adopting unapproved AI tools that expose sensitive data. Both threats converge in the browser, where phishing payloads land and shadow AI usage occurs. Key attack trends include device code phishing (18x kits in the wild), ClickFix variants, and LLMShare malvertising via legitimate AI platforms. On the governance side, the average org has 16 unapproved AI apps, 17 AI browser extensions, and 17 AI-connected OAuth integrations. Browser-layer visibility is positioned as the single control point to address both problems — detecting novel attacks through behavioral analysis rather than IOC matching, and enforcing AI governance by monitoring OAuth consent flows, extension permissions, and data uploads.

9m read timeFrom bleepingcomputer.com
Post cover image
Table of contents
AI-enabled attacks are outpacing traditional defensesNew webinar: Behind-the-scenes of device code phishing attacksUncontrolled AI adoption is the other half of the problemThe browser sees both sides — and that's the pointWhat to ask when evaluating browser-based solutionsWhat this looks like in practice
54 Impressions