Browser Security Explained: How Attackers Steal Sessions, Bypass MFA & Phish Users
The browser is now the frontline of cyberattacks. Learn how attackers hijack sessions, bypass MFA, abuse malicious extensions, and use browser-based phishing to compromise users and how security teams can stop them. Thank you to our sponsor for this webcast, Push Security! If your security stack can’t see what’s happening in the browser, attackers already know where your blind spot is. Register for an upcoming SC Media webcast and learn how security leaders are closing the gaps traditional tools miss: https://www.scworld.com/webcasts/?utm... Timestamps: 00:00 - Introduction & Why Browser Security Matters 01:40 - What Push Security Does in the Browser 03:10 - Why the Browser Is a Major Attack Target 05:45 - Why Traditional Security Tools Miss Browser Threats 09:00 - Research-Led Security & Attacker Tradecraft 13:10 - Session Hijacking & Stolen Browser Sessions 16:20 - OAuth Abuse & Post-Authentication Risk 17:05 - MFA Downgrade Attacks Explained 21:40 - ClickFix & FileFix Attacks 25:00 - Browser-Based Phishing Outside Email 29:10 - Real-Time Detection & Browser Intervention 32:10 - Protecting Passwords in the Browser 35:10 - Fish Kits, Evilginx & Credential Harvesting 39:15 - Password Managers, Autofill & Risk 42:00 - Browser Coverage, Platforms & Extension Controls 47:00 - Passkeys, SaaS Sprawl & Identity Gaps 51:10 - Product Direction & Future of Browser Security 59:20 - Final Takeaways

These NEW Gemini Features Are GAME OVER

What do tech pioneers think about the AI revolution? - The Engineers, BBC World Service

Info Stealer Malware Explained: How Hackers Steal Your Data & Bypass MFA

Attack Surface Management Explained: Why You Don’t Know What You Own

Wireless Attacks on AI Data Centers: The Hidden Threat No One Is Watching

What is happening at Meta?

Incident Response Tabletop Exercises: How CISOs Build Cyber Resilience Before Breach

Ransomware in 2025: How Cybercriminals Operate & How to Stop Them

How I Destroyed The Secret Gold Civilization in Farlands

Real-Time WebSockets Course | Build a Live Sports Dashboard with Node.js & PostgreSQL

Cyber Insurance Explained: What CISOs MUST Know Before a Breach

Trump Faces GOP Fury Over Iran Deal; Fox News Blames JD Vance; Iran Gets $300 Billion: A Closer Look

Why One-Size-Fits-All Security Fails (And How to Reduce Your Attack Surface)

Data Privacy for CISOs: How to Build a Privacy-First Security Strategy (2025 Guide)

JSON Web Tokens (JWTs) for Security Testers (Vulnerabilities)

The World's Most Important Machine

Attacking AI - Jason Haddix - NDC Security 2026

Identity Is Where Everything Breaks… or Unlocks

AI Code Security: Why AppSec Must Evolve for the Era of AI-Generated Code

