Analytics Extension appears to be a cybersecurity tool/attack vector tied to a hidden API inside the Comet AI browser.
Analytics Extension appears to be a cybersecurity tool/attack vector tied to a hidden API inside the Comet AI browser. Its hallmark is a covert API exposure that can be abused within the browser context to take control of user devices. This underscores the growing risk of browser-based attack surfaces and the importance of secure analytics tooling in enterprise environments.
SquareX has revealed a hidden MCP API in the Comet AI browser that allows extensions to execute arbitrary commands on users' devices. This API bypasses security measures found in traditional browsers, posing risks to…
SquareX researchers have identified a hidden MCP API in the Comet AI browser that enables embedded extensions to execute local commands and potentially take full control of users' devices. This API circumvents…