Kimsuky Leverages AI-Generated Chrome Extension for Gmail Data Theft
The Kimsuky threat group is employing an AI-assisted Chrome extension to steal sensitive Gmail data, including messages and attachments, as part of a sophisticated espionage campaign.

The notorious Kimsuky threat group has resurfaced with a new espionage campaign that weaponizes a custom-built Chrome extension to silently exfiltrate Gmail data. This operation, which targeted individuals in South Korea and Japan during the first half of 2026, begins with deceptive phishing emails designed to trick recipients into downloading a malicious shortcut file. Upon execution, this shortcut initiates a chain of events that installs the malicious browser extension and other malware, granting attackers access to a victim's sensitive information and potentially their entire system.
The campaign's initial vector involves phishing emails that direct victims to a OneDrive link. This link leads to an archive containing a Windows shortcut (.LNK) file. When the victim opens this shortcut, a decoy document is displayed to mask the malicious activity occurring in the background. Simultaneously, a hidden command executes a PowerShell script that downloads additional malware and establishes a persistent foothold on the compromised system. Analysts at Enki, who identified and reported on this activity, noted Kimsuky's rapid rotation of command-and-control servers and their use of compromised Korean servers to hinder attribution efforts.
The core of the data theft lies within the "Gmail automatic server uploader" Chrome extension, which researchers believe was significantly aided by generative AI due to embedded Korean comments, debugging text, and emoji. This extension is designed to monitor Gmail pages, specifically targeting the message-reading panel and the send button. Whenever a user views or sends an email, the extension captures crucial details such as the sender, recipient, subject, message body, and any associated attachments. The collected data is then encoded and passed to a background script for exfiltration to an attacker-controlled server.
Beyond Gmail, the campaign demonstrates a multi-pronged approach to data harvesting. The attackers also deployed keyloggers to capture typed input, potentially including credentials, and installed legitimate remote access tools like AnyDesk and Chrome Remote Desktop. The use of these trusted tools, often disguised or configured to run without visible user interface elements, allows for broader system compromise and persistent remote control. Notably, the Chrome Remote Desktop installation leveraged a Windows User Account Control (UAC) bypass technique to gain elevated privileges.
The AI-generated nature of the malicious extension raises significant concerns, echoing broader trends of AI being used to accelerate the development of sophisticated malware. The extension's broad permission requests, allowing it to access all URLs rather than just Gmail, suggest potential for wider exploitation beyond the documented email theft. This broad access could enable the attackers to pivot to other web-based services or exploit vulnerabilities on different websites visited by the victim.
To mitigate the risks associated with this campaign, organizations and individuals are advised to treat unexpected OneDrive share links and downloaded shortcut files with extreme caution. Users should refrain from opening such files and instead report suspicious emails. Security teams are encouraged to hunt for the identified indicators of compromise, block known malicious infrastructure, and proactively scan hosts for the presence of the named scheduled tasks, files, and unauthorized remote-access tools. Regular reviews of browser extensions, scheduled tasks, and running processes are crucial for detecting and removing such threats.
The campaign's reliance on multiple data collection methods, including browser extension theft, keylogging, and remote access tools, underscores the comprehensive nature of Kimsuky's espionage operations. This layered approach increases the likelihood of successful data exfiltration and makes it more challenging for security defenses to detect and block all malicious activities. The group's operational patterns, including quick infrastructure changes and the use of AI-assisted tools, highlight the evolving tactics employed by advanced persistent threat actors.