Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Bees support diverse hidden ecosystems
    • Google’s AI Search overhaul could crush startup SEO
    • SpaceX Is Spending $2.8 Billion to Buy Gas Turbines for Its AI Data Centers
    • Google publishes exploit code threatening millions of Chromium users
    • Google’s In-Car Gemini Dimmed the Sunroof, Ordered Dinner and Became My Tour Guide
    • Optimizing AI Agent Planning with Operations Research and Data Science
    • Mercedes-AMG electric GT 4-Door performance EV revealed
    • AI coworker startup Viktor raises €64.7 million Series A after hitting €12.9 million revenue run rate within 10 weeks of launch
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Thursday, May 21
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»Google publishes exploit code threatening millions of Chromium users
    News

    Google publishes exploit code threatening millions of Chromium users

    Editor Times FeaturedBy Editor Times FeaturedMay 21, 2026No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    Google on Wednesday printed exploit code for an unfixed vulnerability in its Chromium browser codebase that threatens tens of millions of individuals utilizing Chrome, Microsoft Edge, and nearly all different Chromium-based browsers.

    The proof-of-concept code exploits the Browser Fetch programming interface, a normal that permits lengthy movies and different giant recordsdata to be downloaded within the background. An attacker can use the exploit to create a connection for monitoring some features of a consumer’s browser utilization and as a proxy for viewing websites and launching denial-of-service assaults. Relying on the browser, the connections both reopen or stay open even after it or the gadget operating it has rebooted.

    Unfixed for 29 months (and counting)

    The unfixed vulnerability will be exploited by any web site a consumer visits. In impact, a compromise quantities to a restricted backdoor that makes a tool a part of a restricted botnet. The capabilities are restricted to the identical issues a browser can do, reminiscent of go to malicious websites, present nameless proxy shopping by others, allow proxied DDoS assaults, and monitor consumer exercise. Nonetheless, the exploit might permit an attacker to wrangle 1000’s, presumably tens of millions, of units right into a community. As soon as a separate vulnerability turns into obtainable, the attacker might use it to then compromise all these units.

    “The harmful half right here is that you may simply have numerous completely different browsers collectively that you may sooner or later run one thing on that you determine,” mentioned Lyra Rebane, the impartial researcher who found the vulnerability and privately reported it to Google in late 2022 in an interview. She mentioned utilizing the exploit code Google prematurely printed can be “fairly simple,” though scaling it to wrangle giant numbers of units right into a single community would require extra work. Within the thread of Rebane’s disclosure to Google, two builders mentioned in separate responses that it was a “critical vulnerability.” Its severity was rated S1, the second-highest classification.

    Since its reporting 29 months in the past, the vulnerability remained unknown besides to Chromium builders. Then on Wednesday morning, it was printed to the Chromium bug tracker. Rebane initially assumed the vulnerability was finally fixed. Shortly thereafter, she discovered that, actually, it remained unpatched. Whereas Google eliminated the publish, it stays obtainable on archival websites, together with the exploit code.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    CFTC fights Minnesota prediction markets felony restrictions

    May 20, 2026

    DraftKings denies NCAA tournament trademark infringement claims

    May 20, 2026

    Formula 1 betting partnership launches with FanDuel sportsbook

    May 20, 2026

    Illegal gambling scam networks in Southeast Asia target Americans

    May 20, 2026

    An analysis based on current valuations of OpenAI and Anthropic suggests ~$370B of philanthropic assets tied to the two AI companies are poised to become liquid (Nan Ransohoff/Nan’s Substack)

    May 20, 2026

    Secret CISA credentials found in public GitHub repo

    May 20, 2026
    Leave A Reply Cancel Reply

    Editors Picks

    Bees support diverse hidden ecosystems

    May 21, 2026

    Google’s AI Search overhaul could crush startup SEO

    May 21, 2026

    SpaceX Is Spending $2.8 Billion to Buy Gas Turbines for Its AI Data Centers

    May 21, 2026

    Google publishes exploit code threatening millions of Chromium users

    May 21, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    Ars Live: Is the AI bubble about to pop? A live chat with Ed Zitron.

    October 4, 2025

    Four-day workweek boosts well-being and job satisfaction

    July 21, 2025

    Support Vector Machines: A Progression of Algorithms | by Jimin Kang

    February 3, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.