This document proposes a taxonomy for classifying browser malware. It divides browser add-ons into extensions, which are part of the browser, and plug-ins, which are separate programs connected to the browser. The taxonomy is based on how malware exploits security vulnerabilities in browser components, plug-ins, and operating system layers. Browser malware circumvents browser functionality or uses the browser as a platform to infect operating systems. The taxonomy aims to provide insight into browser malware techniques and assist defense development.