TMCnet News
Menlo Security's 2026 Browser Threat Report Finds 1 in 5 Enterprise Phishing Attacks Go Completely Undetected by the Security Tools Built to Stop ThemMenlo Security, the leader Browser Security for human and agentic workforces, today released its 2026 State of Browser Security Threat Report: Evasive Threats, Zero-Day Lures, and the New Browser-First Kill Chain. Based on platform telemetry across millions of active browser sessions in enterprise customer environments from January 1 through March 31, 2026, the report documents a fundamental and largely unaddressed shift in how sophisticated threat actors gain entry to enterprise environments: through the browser session layer that most enterprise security stacks were never built to see. In February 2026, a user at a 60,000-employee integrated health system clicked a link to what appeared to be an Adobe secure document portal. The domain was clean. Zero vendors on VirusTotal flagged it as malicious at time of click. Every reputation-based tool in the existing security stack saw nothing wrong. This is not an edge case. It is what happens when security architecture built around domain reputation encounters attacks engineered to abuse trusted infrastructure. The same gap that allowed this attack is present in most enterprise environments today. Menlo's platform blocked the download before it executed, not because the domain was flagged, but because it analyzed what the page was attempting to do in real time. Key findings from the 2026 State of Browser Security Threat Report include:
The 2026 threat landscape calls for securing the browser session layer, where encrypted traffic executes, credentials are entered, sensitive data moves, and every attack technique documented in this report originates. Enterprises that govern this layer will be positioned to protect both their workforce and the AI agent sessions already operating in their environments by default. Those that don't will continue relying on tools built for a threat model attackers have moved on from. Menlo Security's 2026 State of Browser Security Threat Report is available now here. About Menlo Security Menlo Security is the pioneer of the Browser Security Platform, the industry's first infrastructure designed to govern a hybrid workforce of humans and autonomous AI agents. By centering the browser as the new enterprise operating system, Menlo provides a "Guardian Runtime" that resolves the unique risks created when AI agents operate at machine-speed without human skepticism. The Menlo platform enables the agentic enterprise to scale AI with confidence, providing universal connectivity to legacy data and unified zero-day threat prevention across every session. Trusted by over 1,000 global enterprises-including eight of the ten largest financial institutions and major government agencies-Menlo protects over 8 million users and millions of simultaneous AI agent sessions. Headquartered in Mountain View, California, and backed by investors including JPMorgan Chase, American Express Ventures, and Vista Equity Partners, Menlo is securing the browser for the agentic age. Learn more at www.menlosecurity.com.
View source version on businesswire.com: https://www.businesswire.com/news/home/20260610762655/en/ |

