<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>RuntimeRebel — #Google Chrome</title><description>Cybersecurity articles tagged #Google Chrome on RuntimeRebel.</description><link>https://runtimerebel.com</link><item><title>Chrome 151 Update Patches 41 Critical, High-Severity Flaws</title><link>https://runtimerebel.com/blog/chrome-151-update-patches-41-critical-high-severity-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-151-update-patches-41-critical-high-severity-flaws</guid><description>Google&apos;s Chrome 151 update addresses 41 critical and high-severity vulnerabilities, including memory safety bugs potentially leading to RCE.</description><pubDate>Sun, 09 Aug 2026 16:24:44 GMT</pubDate><category>Google Chrome</category><category>Vulnerabilities</category><category>Memory Safety</category><category>Use After Free</category><category>Out of Bounds Write</category></item><item><title>Google Chrome Blocks Malicious New Tab Hijacker Extensions on Unmanaged Devices</title><link>https://runtimerebel.com/blog/google-chrome-blocks-malicious-new-tab-hijacker-extensions-on-unmanaged-devices</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-chrome-blocks-malicious-new-tab-hijacker-extensions-on-unmanaged-devices</guid><description>Google Chrome will soon block policy-installed extensions from hijacking the New Tab page or changing the default search engine on unmanaged Windows and macOS devices.</description><pubDate>Sun, 02 Aug 2026 16:48:04 GMT</pubDate><category>Google Chrome</category><category>Browser Security</category><category>Malware</category><category>Extensions</category><category>Hijacking</category></item><item><title>Google Chrome Updates Resolve 1,442 Security Flaws</title><link>https://runtimerebel.com/blog/google-chrome-updates-resolve-1442-security-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-chrome-updates-resolve-1442-security-flaws</guid><description>Google Chrome recently addressed 1,442 security flaws across versions 149, 150, and 151. Learn why immediate updates are crucial for user security.</description><pubDate>Fri, 31 Jul 2026 17:41:44 GMT</pubDate><category>Google Chrome</category><category>Browser Security</category><category>Vulnerability Patching</category><category>Security Update</category></item><item><title>AI-Powered Vulnerability Research: Google Patches 1,000+ Chrome Bugs</title><link>https://runtimerebel.com/blog/ai-powered-vulnerability-research-google-patches-1000-chrome-bugs</link><guid isPermaLink="true">https://runtimerebel.com/blog/ai-powered-vulnerability-research-google-patches-1000-chrome-bugs</guid><description>Google utilizes Big Sleep AI to identify and remediate over 1,000 security vulnerabilities in Chrome releases, signaling a shift in automated bug hunting.</description><pubDate>Thu, 30 Jul 2026 17:30:44 GMT</pubDate><category>Google Chrome</category><category>Big Sleep</category><category>Vulnerability Research</category><category>Project Zero</category><category>Artificial Intelligence</category></item><item><title>Chrome Security Update and SonicWall Targeted in AI-Driven Campaigns</title><link>https://runtimerebel.com/blog/chrome-security-update-and-sonicwall-targeted-in-ai-driven-campaigns</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-security-update-and-sonicwall-targeted-in-ai-driven-campaigns</guid><description>Analysis of 370 Chrome vulnerabilities and active SonicWall targeting, highlighting the rise of AI-powered phishing and automated DNS hijacking threats.</description><pubDate>Thu, 30 Jul 2026 17:29:33 GMT</pubDate><category>Google Chrome</category><category>SonicWall</category><category>AI Powered Hacking</category><category>DNS Hijacking</category><category>Phishing</category></item><item><title>Chrome 150 Update: Patching 27 Vulnerabilities, Critical Use-After-Free Flaws</title><link>https://runtimerebel.com/blog/chrome-150-update-patching-27-vulnerabilities-critical-use-after-free-flaws</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-150-update-patching-27-vulnerabilities-critical-use-after-free-flaws</guid><description>Google Chrome 150 update patches 27 vulnerabilities, including two critical use-after-free bugs.</description><pubDate>Thu, 09 Jul 2026 07:44:34 GMT</pubDate><category>Chrome 150</category><category>Use After Free</category><category>Browser Security</category><category>Vulnerability Patching</category><category>Google Chrome</category></item><item><title>Chrome 149 Update Patches 18 High-Severity UAF Vulnerabilities</title><link>https://runtimerebel.com/blog/chrome-149-update-patches-18-high-severity-uaf-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-149-update-patches-18-high-severity-uaf-vulnerabilities</guid><description>Google releases Chrome 149 to address 18 severe vulnerabilities, including multiple use-after-free defects in Graphics, Dawn, and Mojo components.</description><pubDate>Thu, 25 Jun 2026 09:15:58 GMT</pubDate><category>Google Chrome</category><category>CVE-2024-11812</category><category>Use After Free</category><category>Browser Security</category><category>RCE</category></item><item><title>Chrome 149 Update Patches 28 Vulnerabilities — Mitigation Guide</title><link>https://runtimerebel.com/blog/chrome-149-update-patches-28-vulnerabilities-mitigation-guide</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-149-update-patches-28-vulnerabilities-mitigation-guide</guid><description>Google addresses 28 security flaws in Chrome 149, including critical use-after-free bugs. Learn about technical impacts and enterprise patching requirements.</description><pubDate>Fri, 12 Jun 2026 09:36:27 GMT</pubDate><category>Google Chrome</category><category>Chrome 149</category><category>Use After Free</category><category>Memory Corruption</category><category>Browser Security</category></item><item><title>Google Patches CVE-2026-11645: 5th Chrome Zero-Day Exploited in 2026</title><link>https://runtimerebel.com/blog/google-patches-cve-2026-11645-5th-chrome-zero-day-exploited-in-2026</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-patches-cve-2026-11645-5th-chrome-zero-day-exploited-in-2026</guid><description>Google addresses CVE-2026-11645, a critical zero-day vulnerability in Chrome being actively exploited. Learn about patch guidance and detection strategies.</description><pubDate>Tue, 09 Jun 2026 09:17:29 GMT</pubDate><category>CVE-2026-11645</category><category>Google Chrome</category><category>Zero-Day</category><category>Browser Security</category></item><item><title>CVE-2024-4947: Google Patches Fifth Chrome Zero-Day of 2024</title><link>https://runtimerebel.com/blog/cve-2024-4947-google-patches-fifth-chrome-zero-day-of-2024</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2024-4947-google-patches-fifth-chrome-zero-day-of-2024</guid><description>Google addresses CVE-2024-4947, a high-severity V8 type confusion vulnerability in Chrome being exploited in the wild. Update to version 125.0.6422.60 now.</description><pubDate>Tue, 09 Jun 2026 09:16:53 GMT</pubDate><category>CVE-2024-4947</category><category>Google Chrome</category><category>V8 Engine</category><category>Zero-Day</category><category>Kaspersky</category></item><item><title>Google Chrome DBSC: Preventing Account Takeover via Cookie Theft</title><link>https://runtimerebel.com/blog/google-chrome-dbsc-preventing-account-takeover-via-cookie-theft</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-chrome-dbsc-preventing-account-takeover-via-cookie-theft</guid><description>Google Chrome rolls out Device Bound Session Credentials (DBSC) to protect users from session hijacking by cryptographically binding cookies to hardware.</description><pubDate>Fri, 29 May 2026 13:17:47 GMT</pubDate><category>Google Chrome</category><category>DBSC</category><category>Session Hijacking</category><category>Identity Theft</category><category>TPM</category></item><item><title>Chrome 148 Update: Patching Critical Use-After-Free Vulnerabilities</title><link>https://runtimerebel.com/blog/chrome-148-update-patching-critical-use-after-free-vulnerabilities</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-148-update-patching-critical-use-after-free-vulnerabilities</guid><description>Google releases Chrome 148 addressing critical-severity use-after-free vulnerabilities.</description><pubDate>Fri, 15 May 2026 09:12:15 GMT</pubDate><category>Chrome 148</category><category>Chromium</category><category>Use After Free</category><category>Memory Corruption</category><category>Google Chrome</category></item><item><title>Google Chrome ABE Bypass: Heightened Infostealer Threat</title><link>https://runtimerebel.com/blog/google-chrome-abe-bypass-heightened-infostealer-threat</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-chrome-abe-bypass-heightened-infostealer-threat</guid><description>VoidStealer Trojan authors bypass Google Chrome&apos;s App-Bound Encryption (ABE), enabling infostealers to exfiltrate cookies and credentials from users.</description><pubDate>Thu, 07 May 2026 00:51:02 GMT</pubDate><category>Google Chrome</category><category>App Bound Encryption</category><category>ABE Bypass</category><category>VoidStealer</category><category>Infostealer</category><category>Data Exfiltration</category></item><item><title>April 2026 Patch Tuesday: SharePoint Zero-Day, BlueHammer, &amp; Adobe RCE</title><link>https://runtimerebel.com/blog/april-2026-patch-tuesday-sharepoint-zero-day-bluehammer-adobe-rce</link><guid isPermaLink="true">https://runtimerebel.com/blog/april-2026-patch-tuesday-sharepoint-zero-day-bluehammer-adobe-rce</guid><description>Microsoft&apos;s April 2026 Patch Tuesday addresses 167 vulnerabilities, including a SharePoint Server zero-day, Windows Defender &apos;BlueHammer&apos; flaw, and an actively exploited…</description><pubDate>Wed, 15 Apr 2026 00:45:50 GMT</pubDate><category>Microsoft</category><category>Windows</category><category>SharePoint Server</category><category>Windows Defender</category><category>Adobe Reader</category><category>Google Chrome</category><category>Patch Tuesday</category><category>Zero-Day</category><category>RCE</category><category>BlueHammer</category><category>Vulnerability</category><category>Exploitation</category></item><item><title>Chrome DBSC: Securing Session Cookies with Device Binding — Analysis</title><link>https://runtimerebel.com/blog/chrome-dbsc-securing-session-cookies-with-device-binding-analysis</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-dbsc-securing-session-cookies-with-device-binding-analysis</guid><description>Google introduces Device Bound Session Credentials in Chrome to combat session hijacking by cryptographically linking authentication cookies to local hardware.</description><pubDate>Fri, 10 Apr 2026 08:38:17 GMT</pubDate><category>Google Chrome</category><category>DBSC</category><category>Session Hijacking</category><category>Cookie Theft</category><category>Infostealer</category></item><item><title>Google Chrome 146 DBSC Implementation Hardens Windows Against Session Hijacking</title><link>https://runtimerebel.com/blog/google-chrome-146-dbsc-implementation-hardens-windows-against-session-hijacking</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-chrome-146-dbsc-implementation-hardens-windows-against-session-hijacking</guid><description>Google releases Device Bound Session Credentials (DBSC) in Chrome 146 for Windows to mitigate cookie theft and session hijacking via hardware-backed security.</description><pubDate>Fri, 10 Apr 2026 08:37:21 GMT</pubDate><category>Google Chrome</category><category>DBSC</category><category>Session Hijacking</category><category>Cookie Theft</category><category>TPM</category><category>Windows Security</category></item><item><title>Chrome Zero-Day and Fortinet Exploits: Weekly Threat Intelligence</title><link>https://runtimerebel.com/blog/chrome-zero-day-and-fortinet-exploits-weekly-threat-intelligence</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-zero-day-and-fortinet-exploits-weekly-threat-intelligence</guid><description>Intelligence analysis of the latest Chrome zero-day, Fortinet vulnerabilities, and the Axios security breach, including technical remediation for SOC teams.</description><pubDate>Mon, 06 Apr 2026 16:20:58 GMT</pubDate><category>Google Chrome</category><category>Fortinet</category><category>Axios Hack</category><category>Paragon Spyware</category><category>Zero-Day</category></item><item><title>VoidStealer: Bypassing Chrome ABE via Remote Debugging Protocol</title><link>https://runtimerebel.com/blog/voidstealer-bypassing-chrome-abe-via-remote-debugging-protocol</link><guid isPermaLink="true">https://runtimerebel.com/blog/voidstealer-bypassing-chrome-abe-via-remote-debugging-protocol</guid><description>VoidStealer malware uses a novel debugger technique to bypass Google Chrome’s Application-Bound Encryption and exfiltrate browser-stored credentials.</description><pubDate>Sun, 22 Mar 2026 16:10:10 GMT</pubDate><category>VoidStealer</category><category>Google Chrome</category><category>Application Bound Encryption</category><category>Infostealer</category><category>Credential Theft</category></item><item><title>Quantum-Safe HTTPS: Improving Web Latency with NIST PQC Standards</title><link>https://runtimerebel.com/blog/quantum-safe-https-improving-web-latency-with-nist-pqc-standards</link><guid isPermaLink="true">https://runtimerebel.com/blog/quantum-safe-https-improving-web-latency-with-nist-pqc-standards</guid><description>Leading web providers are testing quantum-safe HTTPS protocols that reduce certificate sizes by 90%, improving latency while securing data against Q-day.</description><pubDate>Fri, 20 Mar 2026 08:18:54 GMT</pubDate><category>Post Quantum Cryptography</category><category>Nist Standards</category><category>Ml Kem</category><category>Ml Dsa</category><category>Google Chrome</category><category>Cloudflare</category></item><item><title>Google Patches Chrome Zero-Days CVE-2026-3909 in Skia and V8</title><link>https://runtimerebel.com/blog/google-patches-chrome-zero-days-cve-2026-3909-in-skia-and-v8</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-patches-chrome-zero-days-cve-2026-3909-in-skia-and-v8</guid><description>Google addresses two high-severity Chrome zero-days, including CVE-2026-3909, exploited in the wild via Skia and V8. Learn how to secure your browser now.</description><pubDate>Fri, 13 Mar 2026 12:18:07 GMT</pubDate><category>CVE-2026-3909</category><category>Google Chrome</category><category>Skia</category><category>V8</category><category>Zero-Day</category></item><item><title>Google Chrome Two-Week Release Cycle: Reducing the Patch Gap</title><link>https://runtimerebel.com/blog/google-chrome-two-week-release-cycle-reducing-the-patch-gap</link><guid isPermaLink="true">https://runtimerebel.com/blog/google-chrome-two-week-release-cycle-reducing-the-patch-gap</guid><description>Google transitions Chrome to a two-week stable release cycle to accelerate security patching and minimize the window for n-day vulnerability exploitation.</description><pubDate>Tue, 03 Mar 2026 20:12:17 GMT</pubDate><category>Google Chrome</category><category>Patch Management</category><category>Chromium</category><category>Browser Security</category></item><item><title>Chrome to Adopt Merkle Tree Certificates for Post-Quantum HTTPS</title><link>https://runtimerebel.com/blog/chrome-to-adopt-merkle-tree-certificates-for-post-quantum-https</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-to-adopt-merkle-tree-certificates-for-post-quantum-https</guid><description>Google introduces Merkle Tree Certificates in Chrome to enable quantum-resistant HTTPS, addressing scalability issues found in traditional X.509 PQC signatures.</description><pubDate>Mon, 02 Mar 2026 20:13:15 GMT</pubDate><category>Google Chrome</category><category>Post Quantum Cryptography</category><category>Merkle Trees</category><category>HTTPS</category><category>Cybersecurity Research</category></item><item><title>CVE-2026-0628: Chrome Gemini Panel Exploit Enables Privilege Escalation</title><link>https://runtimerebel.com/blog/cve-2026-0628-chrome-gemini-panel-exploit-enables-privilege-escalation</link><guid isPermaLink="true">https://runtimerebel.com/blog/cve-2026-0628-chrome-gemini-panel-exploit-enables-privilege-escalation</guid><description>A high-severity flaw in Google Chrome&apos;s Gemini side panel allowed malicious extensions to bypass security policies and access local files on target systems.</description><pubDate>Mon, 02 Mar 2026 20:12:51 GMT</pubDate><category>CVE-2026-0628</category><category>Google Chrome</category><category>Privilege Escalation</category><category>Gemini</category><category>Browser Security</category></item><item><title>Chrome Gemini Live Hijacking: Malicious Extension Vulnerability</title><link>https://runtimerebel.com/blog/chrome-gemini-live-hijacking-malicious-extension-vulnerability</link><guid isPermaLink="true">https://runtimerebel.com/blog/chrome-gemini-live-hijacking-malicious-extension-vulnerability</guid><description>A vulnerability in Google Chrome’s Gemini Live AI assistant allowed malicious extensions to hijack sessions and steal user files. Learn more about the impact.</description><pubDate>Mon, 02 Mar 2026 16:19:21 GMT</pubDate><category>Google Chrome</category><category>Gemini Live</category><category>AI Security</category><category>Browser Extensions</category><category>Data Exfiltration</category></item><item><title>Google’s Path to Quantum-Safe Chrome HTTPS via Merkle Tree Certificates</title><link>https://runtimerebel.com/blog/googles-path-to-quantum-safe-chrome-https-via-merkle-tree-certificates</link><guid isPermaLink="true">https://runtimerebel.com/blog/googles-path-to-quantum-safe-chrome-https-via-merkle-tree-certificates</guid><description>Google is developing Merkle Tree Certificates (MTCs) for Chrome to transition the web toward post-quantum cryptography and enhance HTTPS certificate security.</description><pubDate>Mon, 02 Mar 2026 12:18:59 GMT</pubDate><category>Google Chrome</category><category>Post Quantum Cryptography</category><category>Merkle Tree Certificates</category><category>HTTPS</category><category>PKI</category></item></channel></rss>