Google Accounts Hacked Backdoor: New Malware Exploits Cookies, Even Password Resets Don't Help!
The Scoop: Buckle up, Google users! A chilling new malware exploit has emerged, granting hackers access to your Google accounts even after you change your password. This isn't your average phishing scam; this bad boy leverages a hidden Google feature called "MultiLogin" to restore expired authentication cookies, essentially keeping your account door perpetually unlocked for attackers. How it Works: This sneaky malware targets your Chrome browser, specifically the local database where login tokens are stored. Once infiltrated, it steals these tokens and uses them to generate new, persistent cookies that grant access to your Google account. Even resetting your password won't help, as the malware can simply regenerate the cookies again. Who's at Risk? This isn't just a Chrome problem – any browser that uses Google's OAuth system is potentially vulnerable. That means millions of users could be at risk, including those using Gmail, YouTube, Drive, and othe...