
highCyber Attacks
PEEP Toolkit Exploits Chromium Browsers as Post-Compromise Backdoors
Researchers have disclosed details of a Chromium-based post-exploitation toolkit named PEEP. The tool masquerades as a bookmarks extension and is injected directly into browser profiles to bypass Web Store checks and user prompts. By forging Chromium's Secure Preferences, the tool enables post-compromise host command execution on systems where the attacker already holds administrative or code execution access. The disclosure was reported by The Hacker News on September 7, 2026.
The Hacker News1 min read