BlueMoon Exploit Kit Chains Chrome and Windows Zero-Days in Espionage Attacks
Multiple espionage groups are using the BlueMoon exploit kit to chain Chrome and Windows flaws against government, defense and commercial targets. The campaign highlights the danger of patch-gap...
Google Rushes Emergency Chrome Patch as Attackers Exploit V8 Zero-Day
Google has pushed an emergency Chrome update after confirming that a type confusion flaw in the V8 engine, tracked as CVE-2026-85046, is being actively exploited in the wild....
Google Ships Chrome 152 With Fixes for 327 Flaws, Including 10 Critical Use-After-Free Bugs
Chrome 152 lands with 327 security fixes, ten of them rated critical and mostly tied to use-after-free memory bugs across components like ANGLE, Aura, and Chromecast. None are...
Chrome’s Latest Patch Closes 12 Security Holes, Nine of Them Rated High Severity
Google has shipped a new Stable Chrome release fixing 12 vulnerabilities, nine of them high severity, touching core components like V8, ANGLE, and the GPU stack. Several of...
Google Chrome’s Device-Bound Session Credentials Go GA — Cryptographically Kills Cookie-Theft Attacks
Google has moved Device Bound Session Credentials (DBSC) to general availability in Chrome on Windows, cryptographically binding session cookies to the originating device via TPM. Enabled by default...
Google Releases Critical Security Update for Chrome Browser
Google has released a critical security update for its popular Chrome browser to address a zero-day vulnerability. This vulnerability, known as CVE-2023-6345, has been actively exploited by attackers....