01/06/2024
Session token stealing malware is on the rise and can result in takeover of accounts, even after passwords are changed. Recently it has been reported that Google's MultiLogin API has been abused to generate working session tokens, even after the original stolen credentials expire. Google has contacted those affected by this attack.
Google is downplaying reports of malware abusing an undocumented Google Chrome API to generate new authentication cookies when previously stolen ones have expired.