Alon Gal’s Post

View profile for Alon Gal, graphic

Co-Founder & CTO at Hudson Rock

BIG - A major shift is about to happen in the cybercrime ecosystem. Irrevocable cookies from Infostealer infections ⬇ The team behind prominent Infostealer family, Lumma, is claiming they discovered a way to exfiltrate Google cookies from infected computers that will not expire or get revoked even if the owner changes password. This will result in a major shift in the cybercrime world, enabling hackers to infiltrate even more accounts and perform significant attacks. It is important to note that it's not just ordinary Gmail accounts that are accessed through Google, but rather a lot of corporate email addresses belonging to organizations that will likely suffer ransomware attacks, and other types of cyberattacks. In addition to that, Google cookies are not just for email accounts but rather for a wide range of services which will now be much more accessible to hackers. Again, I remind everyone that Hudson Rock obtains the data of infected computers as early as minutes after infections, and before they are taken advantage of by hackers. We also just very recently integrated cookies as part of the data we provide to customers, and we provide a full ethical disclosure to any organization that is impacted by Infostealers. Check for free if your domain is impacted, and receive a free one time ethical disclosure - https://lnkd.in/dmj9R5xj

  • No alternative text description for this image
Jonathan Hay

Cybersecurity Leader | People Champion | Say No to Status Quo | EMBA

11mo

Can the sessions be revoked, thus rendering the session cookie useless?

Like
Reply
Dan Maslin

CISO • FAISA • GAICD • CISSP, CISM, CRISC • CSO30 Awards : #1 2022, Business Value Award Winner 2023

11mo

Great insight thanks Alon, not sure Google is considering the incident response perspective here

Chris Gebhardt

CISO. Practical. Reasonable. Creative. Concise. Experience with FedRAMP, CMMC, ISO, SOC, NIST, and many more. Former LE SWAT Team Leader.

11mo

If true, "This is not good Mav."

See more comments

To view or add a comment, sign in

Explore topics