Skip to main content
  1. Home
  2. Computing
  3. News

Hackers are using cookies to sidestep two-factor authentication

Add as a preferred source on Google

“Cookie stealing” is among the latest trends in cybercrimes that hackers are using to bypass credentials and access private databases, according to Sophos.

Typical security advice for organizations has been to move their most sensitive information to cloud services or to use multifactor authentication (MFA) as a safety means. However, bad actors have figured out how to swipe cookies connected to login details and replicate them to hack the active or recent web sessions of programs that are not commonly refreshed.

A large monitor displaying a security hacking breach warning.
Stock Depot / Getty Images

These hackers are able to exploit several different online tools and services, including browsers, web-based applications, web services, malware-infected emails, and ZIP files.

Recommended Videos

The most insidious aspect of this style of hacking is that cookies are so widely used that they can help nefarious users access systems even if safety protocols are in place. Sophos noted that the Emotet botnet is one such cookie-stealing malware that targets data in the Google Chrome browser, such as stored logins and payment card data, despite the browser’s affinity for encryption and multifactor authentication.

On a broader scale, cybercriminals can purchase stolen cookies data, such as credentials from underground marketplaces, the publication said. The login details for an Electronic Arts game developer ended up on a marketplace called Genesis, which was reportedly purchased by the extortion group Lapsus$. The group was able to replicate EA employee login credentials and ultimately gain access to the company’s networks, stealing 780 gigabytes of data. The group collected game and graphics engine source code details that they used to try to extort EA.

Similarly, Lapsus$ hacked the databases of Nvidia in March. Reports claimed the breach might have revealed the login information of more than 70,000 employees, in addition to 1TB of data from the company, including schematics, drivers, and firmware details. However, there is no word as to whether the hack was due to cookie stealing.

Other cookie-stealing opportunities might be easy to crack if they are software-as-a-service products, such as Amazon Web Services (AWS), Azure, or Slack. These can start with hackers having basic access but tricking users into downloading malware or sharing sensitive information. Such services tend to remain open and running persistently, meaning their cookies don’t expire often enough to have their protocols to be sound security-wise.

Sophos notes that users can regularly clear their cookies to maintain a better protocol; however, that means having to reauthenticate each time.

Fionna Agomuoh
Fionna Agomuoh is a Computing Writer at Digital Trends. She covers a range of topics in the computing space, including…
ChatGPT Images 2.5 lets you sketch what you want instead of trying to describe it
ChatGPT images 2.5

OpenAI is rolling out ChatGPT Images 2.5, its newest image generation model, and it brings a solid mix of speed and quality upgrades that should make your AI art sessions a lot less frustrating. People are already generating over 3 billion images every week across ChatGPT and the API, and this update is built to make that process faster and noticeably more accurate.

What makes Images 2.5 different?

Read more
Intel is about to make PC chips even more expensive, and some could vanish altogether
Intel is done competing on price, and its supply chain is warning that your next CPU purchase will cost noticeably more.
MacBook Pro Intel version

Intel's chips are about to get pricier again, and this might not be the last time.

Supply chain sources suggest the company is planning another price hike of roughly 10% starting October 5, 2026. According to a Digitimes report, the company wants to shift from chasing market share through competitive pricing to protecting profit margins. 

Read more
Students who use AI every day may be falling behind, while moderate users pull ahead
New global testing data suggests more AI in the classroom isn't automatically better.
Logo, Text

I assumed more AI access might help students learn faster. However, a new OECD study dispels that misconception for me and everyone else who gave their children a paid version of AI chatbots, thinking it would help them through their educational journey. 

According to PISA 2025 data from 760,000 students in 91 countries, students who use AI daily score meaningfully worse on standardized tests than their peers. The full picture is more complicated than a simple ban would fix.

Read more