browser-security
112 articles with this tag
MEDIUM
CRITICAL
HIGH
MEDIUM
HIGH
CRITICAL
HIGH
HIGH
MEDIUM
LOW
HIGH
HIGH
LOW
HIGH
MEDIUM
CRITICAL
MEDIUM
INFO
LOW
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
LOW
HIGH
MEDIUM
INFO
INFO
HIGH
HIGH
INFO
HIGH
HIGH
INFO
HIGH
HIGH
HIGH
INFO
MEDIUM
MEDIUM
MEDIUM
MEDIUM
INFO
LOW
LOW
HIGH
HIGH
MEDIUM
HIGH
HIGH
HIGH
INFO
INFO
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
MEDIUM
HIGH
MEDIUM
INFO
MEDIUM
CRITICAL
INFO
INFO
INFO
MEDIUM
HIGH
MEDIUM
HIGH
MEDIUM
HIGH
HIGH
INFO
INFO
HIGH
HIGH
MEDIUM
MEDIUM
HIGH
MEDIUM
INFO
CRITICAL
LOW
CRITICAL
LOW
LOW
MEDIUM
MEDIUM
HIGH
HIGH
INFO
INFO
INFO
HIGH
Cybercriminals are building phishing pages that exist only inside victims’ browsers
Fortinet Patches Critical Vulnerabilities in FortiMonitorOnSight, Chrome Extension
Fortinet Privileged Access Agent: Any Site Could Control Your Proxy and Watch Your Tab
Mozilla Firefox Denial of Service Vulnerability
PEEP Turns Chrome and Edge Into Post-Compromise Backdoors for Host Command Execution
⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
[NEU] [hoch] Google Chrome: Mehrere Schwachstellen
Mozilla Products Multiple Vulnerabilities
Chromium: CVE-2026-78892 Incorrect authorization in Chromoting
Android 17 adds ECH support to make web browsing harder to track
Chaining three public V8 bugs to escape the V8 sandbox and recover a real Google v8CTF flag
Malicious Firefox add-ons caught stealing cryptowallet seed phrases and browser credentials
A week in security (August 17 – August 23)
Network of 77 Firefox extensions linked to crypto theft uncovered
Multiples vulnérabilités dans les produits Mozilla (19 août 2026)
Update Chrome now: Two critical vulnerabilities fixed
Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
Bridging the Gap: An Unprecedented Approach to Browser and Endpoint Security
Chrome’s anti-abuse protections block 7 billion unwanted Android notifications daily
CVE-2026-19149 Use after free in Aura
CVE-2026-19152 Inappropriate implementation in Navigation
CVE-2026-19155 Use after free in Payments
CVE-2026-19158 Use after free in Views
CVE-2026-19156 Heap buffer overflow in Base
Apple's Private Relay feature has flaws that can expose user IP addresses
Google Chrome to block malicious policy-installed extensions
Microsoft Edge Multiple Vulnerabilities
Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace
Jscrambler launches Unified Client-Side Security Platform
Reco enhances AI Runtime with browser-based AI security and automated remediation
Multiples vulnérabilités dans Microsoft Edge (27 juillet 2026)
WhatsApp Web chats exposed by Adobe’s Acrobat extension flaw
Sophos Protected Browser Extension: Protection and visibility without changing browsers
New bugs in Claude for Chrome allow extensions to abuse AI privileges
148 npm Packages Disguised as Student Proxies Turned Browsers Into a DDoS Botnet
Cloudflare launches Precursor to track bot behavior throughout browsing sessions
ExporTheft: 11 "AI Chat Exporter" Chrome extensions upload full chat content on PDF export, while the store listing says "No uploads to external servers"
Two Chrome updates in two days fix critical vulnerabilities
Chrome 150 Update Patches 27 Vulnerabilities
Falcon Secure Access Sets the Standard for Zero Trust Browser Security
Chromium: CVE-2026-14047 Insufficient policy enforcement in Extensions
Chromium: CVE-2026-14046 Inappropriate implementation in CustomTabs
Chromium: CVE-2026-14045 Insufficient validation of untrusted input in Network
Chromium: CVE-2026-14044 Use after free in ANGLE
How We Added WebAuthn to a Browser-Based RDP Client
Opera rolls out Paste Protect feature to fight ClickFix attacks
Opera blocks ClickFix attacks with new clipboard protection feature
Google Chrome Multiple Vulnerabilities
Mozilla Products Multiple Vulnerabilities
‘BioShocking’ jailbreak tricks AI browsers into disclosing private data
Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari
Malicious Chromium extension spoofs Perplexity AI to hijack browser searches
Google Chrome Multiple Vulnerabilities
Cloudflare teams up with big browsers to help websites tell bots from people
RHSA-2026:27733: Important: firefox security update
CVE-2026-12439 Use after free in Digital Credentials
CVE-2026-12440 Use after free in DigitalCredentials
CVE-2026-12445 Use after free in Extensions
CVE-2026-12451 Use after free in DigitalCredentials
CVE-2026-12441 Use after free in File Input
CVE-2026-12447 Heap buffer overflow in WebRTC
CVE-2026-12443 Use after free in Web Authentication
CVE-2026-12452 Use after free in Downloads
[NEU] [hoch] Google Chrome: Mehrere Schwachstellen ermöglichen nicht spezifizierten Angriff
Multiples vulnérabilités dans Google Chrome (17 juin 2026)
RHSA-2026:26521: Important: thunderbird security update
Browser Security Explained: How Attackers Steal Sessions, Bypass MFA & Phish Users - WC #1
Sniper Dz Scams Target MENA Users via Fake Facebook Offers and Browser Alerts
RHSA-2026:25015: Important: firefox security update
What 2026 DBIR Confirms: Attacks Are Living in the Browser
Why the browser is now the front line for AI security
Websites Can Now Spy on You Through Your Hard Drive
LLMReaper - DOM Based AI Conversation Exfiltration via Browser Extensions
New FROST attack exploits browser features for website and app tracking
[NEU] [hoch] Google Chrome und Microsoft Edge: Mehrere Schwachstellen
Websites have a new way to spy on visitors: analyzing their SSD activity
Google leaks details for Chromium bug that can turn browsers into bots
Multiples vulnérabilités dans Microsoft Edge (22 mai 2026)
Akamai to acquire LayerX for $205 million
The Browser Is Breaking Your DLP: How Data Slips Past Modern Controls
ChromeOS Multiple Vulnerabilities
Google Chrome Multiple Vulnerabilities
Microsoft Edge Security Restriction Bypass Vulnerabilities
Mozilla Used Anthropic’s Mythos to Find and Fix 151 Bugs in Firefox
108 malicious Chrome extensions caught stealing Google and Telegram data from 20,000 users
Smashing Security podcast #462: LinkedIn is spying on you, and you agreed to nothing
Chrome Terminates Cookie Stealing Malware - Threat Wire
108 Malicious Chrome Extensions Steal Google and Telegram Data, Affecting 20,000 Users
Google Chrome Rolls Out Protection Against Infostealers Targeting Session Cookies
Google Rolls Out DBSC in Chrome 146 to Block Session Theft on Windows
Protecting Cookies with Device Bound Session Credentials
Your extensions leak clues about you, so we made sure Browser Guard doesn’t
The [LinkedIn browsergate] Attack: How it works
Abusing Modern Browser Features for Phishing
GlassWorm Malware Uses Solana Dead Drops to Deliver RAT and Steal Browser, Crypto Data
Experts Sound Alarm Over “Prompt Poaching” Browser Extensions
Versa Secure Enterprise Browser delivers browser-native security for enterprise apps
Menlo Security delivers unified governance and threat prevention for AI agents and humans
Apple Debuts Background Security Improvements With Fresh WebKit Patches
Google Chrome Multiple Vulnerabilities