The CVE-2023-5217 Deja Vu – Another Actively Exploited Chrome Vulnerability Affecting a WebM Project Library (libvpx)

The CVE-2023-5217 Deja Vu – Another Actively Exploited Chrome Vulnerability Affecting a WebM Project Library (libvpx)

By Ofri Ouzan & Yotam Perkal, Rezilion Security Research On September 27th, 2023 Google released an update including 10 security fixes. Notably, one of these fixes, identified as CVE-2023-5217, was highlighted for ...
Google Chrome Heap Buffer Overflow Vulnerability (CVE-2023-5217) Notification

Google Chrome Heap Buffer Overflow Vulnerability (CVE-2023-5217) Notification

Overview Recently, NSFOCUS CERT found that Google officially fixed a zero-day exploit (CVE-2023-5217), which was caused by the heap buffer overflow in the VP8 encoding of the open source libvpx video codec ...
Rezilion Researchers Uncover New Details on Severity of Google Chrome Zero-Day Vulnerability (CVE-2023-4863)

Rezilion Researchers Uncover New Details on Severity of Google Chrome Zero-Day Vulnerability (CVE-2023-4863)

By Ofri Ouzan & Yotam Perkal, Rezilion Security Research On September 11th, 2023 Google released an emergency security fix for a critical vulnerability discovered, identified as CVE-2023-4863 affecting the Google Chrome for ...
Google Chrome Heap Buffer Overflow Vulnerability (CVS 2023-4863) Notification

Google Chrome Heap Buffer Overflow Vulnerability (CVS 2023-4863) Notification

Overview Recently, NSFOCUS CERT found that Google officially fixed a heap buffer overflow vulnerability (CVE-2023-4863). Due to a flaw in the WebP module, an attacker triggered the vulnerability by inducing users to ...
Drop Everything: Update Chrome NOW — 0-Day Exploit in Wild

Drop Everything: Update Chrome NOW — 0-Day Exploit in Wild

It’s Help|About Time: Chrome’s “V8” JavaScript engine has high-severity vuln. Scrotes already exploiting it ...
Security Boulevard

Tripwire Patch Priority Index for April 2022

Tripwire’s April 2022 Patch Priority Index (PPI) brings together important vulnerabilities for Microsoft, Google Chrome, Oracle, and Adobe. First on the patch priority list this month is an elevation of privilege vulnerability ...
Google Opens new Ad-Targeting API—Topics, ‘Privacy Sandbox’ and FLEDGE

Google Opens new Ad-Targeting API—Topics, ‘Privacy Sandbox’ and FLEDGE

Cookies are dead—or, at least, their days are numbered. Instead, Google wants to shape the future of targeted advertising ...
Security Boulevard
Best of 2021 - Chrome to Enforce HTTPS Web Protocol (Like It or Not)

Best of 2021 – Chrome to Enforce HTTPS Web Protocol (Like It or Not)

What a difference an ‘s’ makes. This seemingly unimportant change could have a big—if unseen—impact ...
Security Boulevard
Targeted Dream Incubation, TikTok Data Sharing with China, Chrome and Firefox Updates

Targeted Dream Incubation, TikTok Data Sharing, Chrome and Firefox Updates

Is dream hacking the next big privacy concern or just a new marketing gimmick? Some people may be surprised that TikTok shares data with China, and details on Google Chrome adding HTTPS-first ...

Tripwire Patch Priority Index for May 2021

Tripwire’s May 2021 Patch Priority Index (PPI) brings together important vulnerabilities from Google Chrome, Adobe and Microsoft. First on the patch priority list this month are patches for macOS (CVE-2021-30657) and Google ...