Digital attack vulnerability discovered on Google Chrome

NGUYỄN ĐĂNG |

Kaspersky experts have just discovered and supported patching a serious zero-day vulnerability in the Google Chrome browser.

Through this vulnerability, attackers can overcome the sandbox protection mechanism - a filter created by Google to control, manage, and prevent new websites from being highly ranked in the results page of the Google search engine.

detected by Kaspersky's Global Research and Analysis Team (GReAT), this vulnerability does not require users to perform any action other than clicking on malicious links, and this is an extremely complex, sophisticated vulnerability. That is why Kaspersky researchers have been recognized by Google for their discovery and reporting of this vulnerability.

In mid-March 2025, Kaspersky discovered an infection wave that occurred when users clicked on personalized and email fraudulent links. After clicking on the link, the user's system is immediately hacked, even if that person does not perform any additional operations.

After analyzing and confirming that the attack was exploiting an undetectable vulnerability in the latest version of Chrome, Kaspersky immediately alerted Google's security team. The security patch for this vulnerability has just been released recently.

Kaspersky named the campaign Operation ForumTroll, because the attackers used the form of sending emails inviting victims to attend the Primakov Readings forum to commit fraud. More specifically, toxic links only exist for a short time to avoid detection. And in most cases, the links will be directed to the legitimate Primakov Readings website to hide traces after the fraud is completed.

Boris Larin, Head of Security researchers at Kaspersky's GReAT, said the vulnerability was more dangerous than the dozens of zero-day vulnerabilities we have discovered over the years. The attacker exploited this vulnerability to bypass Chrome's sandbox protection mechanism without performing any obvious acts, as if the browser's security system had almost disappeared.

Kaspersky security experts recommend implementing the following measures to protect against similar complex threats:

- Timely software update: Always update the operating system and web browser, especially Google Chrome, to avoid cybercrime attacks through new security vulnerabilities.

- Apply a multi-layered security model: In addition to endpoint protection, users should consider using solutions such as Next XDR Expert, applying artificial intelligence and machine learning to analyze and measure the correlation of data, thereby automatically detecting and responding to advanced threats and APT campaigns.

- Using the latest forecast information such as Kaspersky Threat Intelligence, it helps update zero-day vulnerabilities and the latest attack techniques.

NGUYỄN ĐĂNG
TIN LIÊN QUAN

Da Nang launches handbook to evaluate urban transport projects

|

On April 2, the Department of Finance of Da Nang City organized a workshop to introduce notebooks to guide the assessment of the necessity and socio-economic efficiency of urban transport projects.

trend to create Ghibli style photos on ChatGPT causes controversy

|

The trend of creating Ghibli-style photos on ChatGPT is causing a lot of controversy.

Stealing Cryptocurrency from Google Chrome Vulnerability

|

Taking advantage of a vulnerability in Google Chrome, the Lazarus hacker group attacked and installed spyware to steal victims' financial information.

Securities plummeted, down 82.28 points

|

Selling pressure occurred as soon as the stock market opened after receiving information that the US was imposing tariffs on trading partners, including Vietnam.

Organizing separate test scores for independent candidates in high school graduation exams

|

HCMC - Candidates studying under the old and new programs will take the exam at different exam scores in this year's high school graduation exam.

The White House states why Russia is not subject to counterpart tariffs

|

President Donald Trump announced the imposition of countervailing tariffs on February 2 on 185 countries and territories, but Russia is not on the list.

Hanoi promotes tourism with a unique gift festival

|

Hanoi To stimulate tourism, from April 11 to 13, Hanoi will organize the 2025 Tourism gift Festival.

New developments in the case of a valedictorian becoming a high school slide in Thanh Hoa

|

C.T.H - a student of class 10A4 at Le Hong Phong High School (Bim Son, Thanh Hoa) has dropped out of school after a scandal from the valedictorian.

Da Nang launches handbook to evaluate urban transport projects

NGUYÊN THI |

On April 2, the Department of Finance of Da Nang City organized a workshop to introduce notebooks to guide the assessment of the necessity and socio-economic efficiency of urban transport projects.

trend to create Ghibli style photos on ChatGPT causes controversy

QUANG MINH (THEO engadget) |

The trend of creating Ghibli-style photos on ChatGPT is causing a lot of controversy.

Stealing Cryptocurrency from Google Chrome Vulnerability

NGUYỄN ĐĂNG |

Taking advantage of a vulnerability in Google Chrome, the Lazarus hacker group attacked and installed spyware to steal victims' financial information.