FROST exploits the Origin Private File System (OPFS), a browser API that lets websites create and store files on a user's local disk.
A new 'File Archivers in the Browser' phishing kit abuses ZIP domains by displaying fake WinRAR or Windows File Explorer windows in the browser to convince users to launch malicious files. Earlier ...