Threat Advisory: Aurora Ransomware and AI-Assisted Exploitation
An Aurora ransomware affiliate is using an AI coding assistant to plan and run intrusions across 30+ victims in nine countries. Read UltraViolet TIDE's findings.
Benchmarks your AI security practices against peer data.
Find flaws in AI Systems
Find flaws in web, mobile, and IoT applications.
Live-fire exercises to sharpen detection and response.
Time-boxed security assessments across networks, apps, and infrastructure.
Simulated attacks to test detection and incident response.
Named security experts integrated seamlessly into your team.
Real-time detection and automated threat response.
24x7 monitoring and response by expert analysts.
Detection-focused SIEM migration without visibility gaps.
UltraViolet's proprietary AI platform powering all application penetration testing.
Unified security platform powering all UV services.
Automated detection engineering across your security platforms.
Cross-platform toolkit for advanced red team ops.
UltraViolet Cyber provides security services across the AI lifecycle, combining strategy, threat modeling, adversarial testing, monitoring, and training to support secure AI adoption.
An Equinox assessment of an existing Managed SOC customer’s environment identified a faster, clearer path to ...
Secure your code, infrastructure, and deployment pipelines before attackers exploit them.
AI penetration testing needs more than automation. See why a human-in-the-loop model is closing the coverage gap between ...
AI Governance by DesignAn Architecture-Aware Approach for Embedding Governance into AI Systems
UltraViolet Cyber is a practitioner-led MSSP delivering offensive and defensive security to Global 2000 and Federal clients. Built by former intelligence operators, we unify application security, red teaming, detection, and engineering under one roof. Our UV Lens platform replaces silos with integrated, outcome-driven operations.
UltraViolet Cyber
September 9, 2026
PEEP demonstrates that the modern web browser has become a primary post-compromise attack surface, using forged Chromium integrity checks and a native-messaging bridge to turn Chrome and Edge into persistent, host-level backdoors capable of credential theft, session hijacking, and command execution once an attacker already has a foothold on a device. Because the malware operates inside a signed, trusted browser process and relies on layered persistence that survives partial remediation, organizations cannot rely solely on outsourced network and endpoint monitoring to close this gap; several of the most effective mitigations require internal policy decisions and governance changes that only the organization itself can authorize and enforce.
What UltraViolet Cyber is Doing
Researchers at SOCRadar have disclosed PEEP, a Chromium-based post-exploitation toolkit that repurposes Chrome and Edge as persistent backdoors on already-compromised hosts. Disguised as a benign extension named "Smart Bookmarks," PEEP is installed by an operator who already holds administrative or code-execution access on the target machine. Once deployed, its installer forges Chromium's Secure Preferences integrity values (protection.macs and super_mac), allowing the malicious extension to bypass Web Store verification and auto-enable without triggering the browser's normal tamper warnings. This is not an initial-access tool; it is a force multiplier for attackers who have already breached a device, and it converts a single endpoint compromise into a long-lived, browser-resident foothold.
The technical significance for enterprise environments lies in PEEP's native-messaging bridge, which extends the malware's reach beyond the browser sandbox into full host control. A companion binary (nm_host.exe) executes shell commands, manages files, and enumerates processes and services, all triggered through the browser's trusted, signed process. Because this activity runs inside a legitimate Chrome or Edge binary, conventional endpoint detection tuned to flag unsigned or newly introduced executables is far less likely to catch it. PEEP layers four independent persistence mechanisms, including a ScriptCache-based technique that lets a previously compiled malicious service worker survive even after the on-disk source files are overwritten with clean code, meaning a single remediation step will not fully evict it.
Operationally, PEEP beacons to a hardcoded command-and-control IP every 30 seconds over unencrypted HTTP, continuously harvesting session cookies, browsing history, active-tab metadata, and credential-like form data, while accepting broader tasking for screenshots, clipboard capture, JavaScript injection, and proxy manipulation. This combination directly threatens session integrity and identity infrastructure: stolen cookies and credentials enable session hijacking and lateral movement that can bypass MFA controls entirely if session tokens are reused before expiry. The toolkit is built on the open-source RedExt framework, which has separately surfaced in GlassWorm campaigns, indicating that browser-extension-based tradecraft is proliferating and being iterated on rather than remaining a one-off proof of concept.
Attribution remains unconfirmed, but Traditional Chinese-language QA artifacts recovered from an exposed staging server point to a Chinese-speaking developer or operator with moderate confidence. SOCRadar also found artifacts suggesting the operator used an "authorized CTF" pretext, possibly to reduce safety guardrails in AI coding tools during development. Operational security on the actor's side was notably poor: the C2 infrastructure exposed its own private signing key, source code, and build history via an open directory.
For enterprise defense, this threat argues for control at four levels. First, block the known C2 IP and domain at the network egress layer. Second, harden browser policy by disabling developer mode, enforcing strict extension allow-listing through GPO or MDM, and restricting native-messaging host registration to approved binaries only. Third, deploy EDR rules that flag non-browser processes, particularly PowerShell, writing to Secure Preferences or attempting HMAC manipulation, since this is the headline defense-evasion technique that lets the malicious extension pass Chromium's own integrity check. Fourth, adopt phishing-resistant MFA and app-bound encryption for browser-stored credentials and session tokens, since PEEP is designed specifically to steal and reuse them. The broader lesson is that the browser has become a first-class attack surface requiring host-level telemetry and native-messaging monitoring, not just URL filtering and marketplace reputation checks.
Browser extensions have been a soft target for attackers for well over a decade, but the nature of that abuse has shifted substantially. Early browser-based threats were largely opportunistic: adware injected into legitimate-looking extensions, ad-fraud toolbars distributed through bundling, and simple credential-stealing scripts pushed through compromised Web Store listings. These campaigns relied on tricking users or slipping past marketplace review, and their impact was mostly confined to the browser itself, harvesting cookies, tracking browsing habits, or hijacking ad revenue. What PEEP represents is the maturation of that lineage into a purpose-built, post-compromise framework that assumes the attacker already has a foothold and uses the browser not as the target but as a durable, low-visibility pivot into the operating system itself.
The emergence of open-source frameworks like RedExt, and derivatives such as PEEP and its prior use in GlassWorm campaigns, signals that browser-based command-and-control is becoming productized and reusable rather than bespoke. This mirrors a pattern seen elsewhere in the threat landscape: once a capability is published as a research or red-team tool, it gets forked, extended, and operationalized by less sophisticated actors who inherit years of tradecraft refinement for free. PEEP's native-messaging bridge, its four-layer persistence model, and its Secure Preferences forgery technique all show a level of engineering investment that would have been uneconomical for a single-use campaign, but becomes worthwhile once built as a reusable platform. The apparent use of AI-assisted development and "authorized testing" framing to work around AI coding safety filters further suggests that the barrier to building these frameworks is dropping, letting a wider pool of developers produce capabilities that previously required specialized offensive security expertise.
Looking forward, defenders should expect browser-based post-exploitation frameworks to keep expanding in scope and stealth, particularly as browsers increasingly serve as the primary interface for enterprise SaaS, identity federation, and even emerging agentic AI workflows. As enterprises push more identity and session logic into the browser through SSO, passkeys, and browser-native security controls, that same surface becomes more valuable to attackers who can bridge the sandbox to the host, as PEEP already does. Future iterations are likely to add encrypted C2 channels, better operational security than PEEP's own exposed staging server, and possibly cross-browser or cross-platform support given the Linux tooling already found in this campaign. Organizations should treat browser telemetry and native-messaging host activity as a first-class monitoring priority going forward, not an afterthought bolted onto endpoint and network defenses.
We’re here to help. Get in touch for an initial conversation with one of our security experts and learn more about how UltraViolet Cyber can help you take cyber readiness and resilience to new levels.