
JSCeal: Malware Crafts In-Browser Sessions to Bypass Google Login
Security researchers describe JSCeal, a sophisticated compiled V8 JavaScript malware that harvests credentials, keystrokes, and screenshots, and can reconstruct stolen cookies to replay browser sessions and bypass Google authentication. It uses multi‑layer obfuscation and a proxy-based traffic interceptor to modify requests for crypto services, and is delivered via malvertising campaigns (including SourTrade) that assemble the final payload inside the victim’s browser, signaling active development and broad targeting of Chromium-based browsers across 12 countries in 25 languages.