/
Published on 28.03.2026
TLDR: Browser extensions and AI agents operate inside your browser with your full identity and permissions, yet most browsers treat their actions identically to your own. This creates a silent attack surface where prompt injection, privilege escalation, and data exfiltration can happen without triggering a single warning. The legal system is starting to notice too.
Your Browser Watched You Share Company Secrets. It Said Nothing.