The invisible thief: How a sophisticated browser extension is emptying Australian bank accounts

The invisible thief: How a sophisticated browser extension is emptying Australian bank accounts

The invisible thief: How a sophisticated browser extension is emptying Australian bank accounts

https://www.ibm.com/think/news/invisible-thief-sophisticated-browser-extension-emptying-bank-accounts

Publish Date: 2026-05-26 03:00:00

Source Domain: www.ibm.com

Today, AI can generate code at the level of professional developers and implement new methods at unprecedented speed. This revolutionary shift is not only transforming innovation, it is also reshaping how fraudsters operate.

This research provides a real-world example of how threat actors are increasingly weaponizing LLM and AI code-generation tools to mass-produce malware. Attackers no longer need to invest significant effort in developing sophisticated evasion techniques or maintaining long-term infrastructure. Instead, they can rapidly deploy new variants, regenerate code with improved logic and create entirely new hashes within seconds.

This capability enables campaigns involving hundreds of payloads and thousands of phishing variations within a single attack operation. Traditional barriers such as hash detection or infrastructure exposure are becoming far less effective. When one variant is detected, attackers simply generate another, even tailoring unique malware versions per victim.

Cyber attackers are advancing with AI, and defense strategies must too. This aligns with security experts’ expectations for this technological revolution. As emphasized in the IBM Institute for Business Value report, Cybersecurity 2028: Your workforce, built for the AI frontier:

“Over the next 36 months, the cybersecurity landscape will be redrawn entirely. The question isn’t whether AI will transform how your organization defends itself—it’s whether you’ll be driving that transformation or scrambling to catch up. The enterprises that thrive won’t just be AI-enabled; they’ll be AI-native, with security woven into the fabric of every automated decision, every synthetic data set, every autonomous action. Your future awaits. The question is: will you crawl, walk, or run toward it?”

That is why we are not simply adapting; we are engineering our own defense: AI-assisted scalable analysis of browser threats.

The system is built as a scalable, AI-assisted…

Source