← All news
Extension Hijacking
Extension hijacking is a security threat where threat actors gain unauthorized control of browser or software extensions, either through compromise of the developer account, supply chain attack, or direct malware injection. This technique matters for AI governance because malicious extensions can intercept sensitive data, monitor user activity, inject prompts into AI applications, or manipulate the output of AI systems before users see them. Organizations implementing AI governance frameworks must monitor extension permissions and enforce policies that restrict which browser extensions and plugins can interact with enterprise AI tools.
1 item
