Physical Address

304 North Cardinal St.
Dorchester Center, MA 02124

Google, the chrome used in the target hack campaign corrects zero daily security defect


Google said that this was a weakness in Chrome browser for Windows used by the victims to enter the computers of victims.

One short note Tuesday, Google said he solved the weakness of it, Tracked as CVE-2025-2783At the beginning of this month, Kaspersky was discovered by researchers in the security company.

Google has notified that an exploitation for this mistake is “in a wild situation.” It is called wrong zero day Because the seller – in this case, it was not given the time to make a mistake before being exploited.

According to Kaspersky, in the Chrome was exploited within a hack campaign targeting Windows computers.

In Writing a blogKaspersky called on the “Operations Forumtroll” campaign and targeted the victims with a phishing email inviting the Russian global political summit. When a link in the email is clicked, the victims have exploited mistakes to access the victim to a harmful website immediately to access PC data.

Caspersky provided little detail Wrong on the chrome slope bugu, but allowed the bugs to pass the sand box protection of the chrome that restricts access to other information on the user’s computer. Kaspersky said the mistake affects all other browsers based on Google’s chrome engine.

In A separate analysisKaspersky said the mistake was usually used in a spying campaign designed to hide data from the target device and hide data from the target device for a while. Russian headquarters security company, the hackers sent individual phishing emails to the Russian media representatives and educational institutions, he said.

It is not known who exploits this mistake, but the Kaspersky campaign is likely to be the state-funded or government support group.

Browsers like chrome are often a target for harmful hackers and government support. Zero daily errors who can view protection and harmful device information can be sold at high prices. Was a zero daily broker in 2024 Up to $ 3 million for exploited errors You can start work from the Internet.

Google said Chrome updates will be broadcast in the coming days and weeks.



Source link

Leave a Reply

Your email address will not be published. Required fields are marked *