Zero-day Vulnerability in Chrome Being Actively Exploited

Search for a command to run...

No comments yet. Be the first to comment.
Tổng Quan Hãy tưởng tượng: một nhân viên nhân sự tại một công ty hàng không ở Pakistan nhận được lời mời phỏng vấn hấp dẫn từ một thương hiệu tuyển dụng có vẻ rất quen thuộc. Một cuộc gọi video được l

Tóm tắt Ngày 19/03/2026, cơ quan chức năng Mỹ, Canada và Đức triệt phá hạ tầng của bốn botnet IoT lớn nhất từng được ghi nhận — Aisuru, Kimwolf, JackSkid và Mossad. Hơn ba triệu thiết bị bị nhiễm. Hơn

Tóm tắt Không có malware nào trong chiến dịch này. Payload cuối cùng mà nạn nhân nhận được là trình cài đặt chính thức của Level RMM, tải trực tiếp từ hạ tầng của chính Level, cài đặt bằng msiexec với

Phần lớn dữ liệu thu được từ một honeypot SSH internet-facing là nhiễu: dò mật khẩu liên tục, hoặc bot đăng nhập thành công rồi tải payload xuống chạy ngay lập tức. Nhưng ngày 27/6/2026, honeypot của

Từ tháng 1/2025, một nhóm tấn công chưa xác định danh tính đã duy trì hoạt động gián điệp mạng nhắm vào các cơ quan chính phủ tại Afghanistan, Kyrgyzstan, Tajikistan, Uzbekistan, Kazakhstan và Syria,

Recently, Google released an emergency patch for a new zero-day vulnerability that hackers are actively exploiting.
Vulnerability ID: CVE-2025-6554
CVSS(3.1) Score: 8.1
Severity Level: HIGH
Description: A type confusion error in Chrome's V8 engine allows remote attackers to exploit and execute arbitrary code through a malicious HTML file.
Affected Versions: All versions of Google Chrome before version 138.0.7204.96.
As reported by FPT Threat Intelligence in a previous security alert, the JavaScript Engine V8 acts as the brain processing JavaScript code in Google Chrome and other Chromium-based browsers like Brave, Chromium Edge, etc. When users open any webpage, the JavaScript code of that page is processed by V8 to make the page and its components function.
The CVE-2025-6554 vulnerability in the V8 engine due to a type confusion error allows remote attackers to read/write arbitrary memory on a victim's system through a malicious HTML page. Since V8 directly processes code from websites that users visit, hackers can exploit this process to take advantage of the vulnerability and infiltrate the victim's system.
CVE-2025-6554 also enables remote attackers to execute arbitrary code, inject malicious code into system processes, or further exploit the system when combined with other known serious security vulnerabilities like CVE-2025-5419. The fact that this vulnerability is being actively exploited in the wild increases its severity and the alarming situation it causes.
In its announcement, Google recommends users to:
Update Chrome browser to the latest version: Upgrade to version 138.0.7204.96/.97 for the stable version of Google Chrome on Windows, 138.0.7204.92/.93 for macOS, or version 138.0.7204.92 for Linux.
Avoid visiting unfamiliar websites: Besides updating to the latest software version, users should not visit unfamiliar links online. Do not download or install files or software from unknown sources.
Use security solutions: Install antivirus software, regularly back up data, or use advanced security solutions like 24/7 monitoring to ensure maximum system safety.