Claude Chrome Extension Flaw Lets Any Extension Take Over AI
A vulnerability in Anthropic’s Claude Chrome extension allows other browser extensions to inject prompts and fully control AI actions without proper identity checks. Attackers can exploit the flaw to access private data, manipulate cloud files, and trigger unauthorised actions through trusted extension messaging channels.
Source: LayerX
Read more: CyberSecBrief











