NodeSphere
  • Communities
  • Create Post
  • Create Community
  • heart
    Support Lemmy
  • search
    Search
  • Login
  • Sign Up
botM to netsecEnglish · 12 days ago

LLMReaper - DOM Based AI Conversation Exfiltration via Browser Extensions

thewhiteh4t.github.io

external-link
message-square
0
link
fedilink
1
external-link

LLMReaper - DOM Based AI Conversation Exfiltration via Browser Extensions

thewhiteh4t.github.io

botM to netsecEnglish · 12 days ago
message-square
0
link
fedilink
LLMReaper - DOM Based AI Conversation Exfiltration via Browser Extensions | Lohitya Pushkar (thewhiteh4t)
thewhiteh4t.github.io
external-link
LLMReaper is a proof-of-concept Chrome extension (Manifest V3) demonstrating passive DOM-based exfiltration of AI conversations from ChatGPT, Claude, and Gemini using MutationObserver, no special permissions, no network interception. Captured conversations are scanned in real-time for exposed API keys, OAuth tokens, JWTs, cloud credentials, and passwords, then exfiltrated via service worker to bypass Same-Origin Policy. Most users never question the permissions they grant browser extensions.
alert-triangle
You must log in or # to comment.

netsec

netsec

Subscribe from Remote Instance

You are not logged in. However you can subscribe from another Fediverse account, for example Lemmy or Mastodon. To do this, paste the following into the search field of your instance: !netsec@nodesphere.site
lock
Community locked: only moderators can create posts. You can still comment on posts.
Visibility: Public
globe

This community can be federated to other instances and be posted/commented in by their users.

  • 1 user / day
  • 1 user / week
  • 1 user / month
  • 1 user / 6 months
  • 2 local subscribers
  • 2 subscribers
  • 1.01K Posts
  • 8 Comments
  • Modlog
  • mods:
  • bot
  • UI: 0.19.12
  • BE: 0.19.15
  • Modlog
  • Instances
  • Docs
  • Code
  • join-lemmy.org