
CSS Attacks Break Webmail Boundaries, Stealing Passwords and Tokens
Researchers at Black Hat USA 2026 demonstrated CSS- and HTML-based attack chains that can escape the boundary of webmail interfaces across Outlook, Gmail, Fastmail, Proton Mail, Yahoo Mail, and AOL Mail to capture passwords, leak tokens, hijack UI actions, and even manipulate connected AI tools; while some vectors have been patched (Fastmail, Proton Mail), others (Outlook password chain, Gmail image-set() bypass) may still work; PoCs are public, and defense recommendations include isolating HTML emails in sandboxed iframes, tightening CSS validation with allow-lists, blocking dangerous selectors and attacker-controlled image requests, and restricting external resources.

