
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
@monoes/monobrowse
Advanced tools
Native browser automation via Chrome DevTools Protocol — the engine powering monomind browse
Browser automation via Chrome DevTools Protocol — navigate, click, fill forms, take screenshots, and evaluate JavaScript in a real Chrome browser. No Puppeteer, no Playwright, no external binaries — just CDP over WebSocket.
Part of the Monomind ecosystem. Powers
monomind browse.
npm install @monoes/monobrowse
# Via monomind
monomind browse open https://example.com
monomind browse screenshot --output page.png
monomind browse click "button.submit"
monomind browse eval "document.title"
import { Browser } from '@monoes/monobrowse';
const browser = new Browser();
await browser.connect();
await browser.navigate('https://example.com');
await browser.click('button.login');
await browser.fill('input[name="email"]', 'user@example.com');
await browser.screenshot({ path: 'result.png' });
const title = await browser.evaluate('document.title');
await browser.close();
Monobrowse talks CDP directly — no 50+ MB framework download, no binary management, no version pinning against Chrome releases. It does what AI agents need (navigate, interact, screenshot, evaluate) without the weight.
MIT
FAQs
Native browser automation via Chrome DevTools Protocol — the engine powering monomind browse
We found that @monoes/monobrowse demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.