Google Chrome adds approximate location sharing on Android, giving users more control over privacy

https://fed.brid.gy/r/https://nerds.xyz/2026/05/chrome-approximate-location-sharing/

Firefox Exposed: AI Model Uncovers 271 Zero-Day Vulnerabilities

Meet the AI model that just supercharged Firefox security, uncovering a whopping 271 zero-day vulnerabilities that have now been squashed in the latest update to Firefox 150. This game-changing collaboration between Firefox and Anthropic's cutting-edge tools has made the browser safer than ever.

https://osintsights.com/firefox-exposed-ai-model-uncovers-271-zero-day-vulnerabilities?utm_source=mastodon&utm_medium=social

#ZeroDay #Firefox #AiModel #VulnerabilityManagement #BrowserSecurity

Firefox Exposed: AI Model Uncovers 271 Zero-Day Vulnerabilities

Discover how Firefox fixed 271 zero-day vulnerabilities with AI, learn more about their security efforts and upgrade to the latest version now for enhanced protection.

OSINTSights
Chrome 147 & Firefox 150.0.1 ship critical security updates: use-after-free & memory corruption bugs could allow code execution or info leaks. Patch to latest browser versions ASAP. ๐Ÿ›ก๏ธ https://radar.offseq.com/threat/chrome-147-firefox-150-security-updates-rolling-ou-587da3ca #OffSeq #BrowserSecurity #Vulnerability

๐Ÿ›ก๏ธ Now Announcing: A New Cybersecurity Session at BSides Luxembourg

๐—–๐—ข๐— ๐—ฃ๐—ฅ๐—˜๐—›๐—˜๐—ก๐—ฆ๐—œ๐—ฉ๐—˜ ๐—™๐—ฅ๐—”๐— ๐—˜๐—ช๐—ข๐—ฅ๐—ž ๐—™๐—ข๐—ฅ ๐—”๐—ก๐—”๐—Ÿ๐—ฌ๐—ญ๐—œ๐—ก๐—š ๐—”๐—ก๐—— ๐——๐—˜๐—ง๐—˜๐—–๐—ง๐—œ๐—ก๐—š ๐— ๐—”๐—Ÿ๐—œ๐—–๐—œ๐—ข๐—จ๐—ฆ ๐—•๐—ฅ๐—ข๐—ช๐—ฆ๐—˜๐—ฅ ๐—˜๐—ซ๐—ง๐—˜๐—ก๐—ฆ๐—œ๐—ข๐—ก๐—ฆ โ€“ Van Nguyen

Take a closer look at one of the webโ€™s most overlooked threats in this 30-minute lightning talk session feature within the Actionable CTI and Detection Engineering Village. This session dives into the growing risk of malicious browser extensions and how they silently impact millions of users through tracking, redirects, ad injection, data theft, and other unwanted actions.

Built on a curated dataset of 460 malicious extensions removed from the Chrome Web Store, this talk presents a practical detection framework combining static and dynamic analysis techniques, including CodeQL and Python-based workflows. A valuable session for analysts, threat hunters, and defenders looking to better understand browser-based threats.

Van Nguyen is a Security Analyst with a strong background in Software Engineering, Machine Learning, and IT Security, currently focusing on modern threat analysis and detection methodologies.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/
๐Ÿ“… Schedule: https://hackertracker.app/schedule?conf=BSIDESLUX2026

#BSidesLuxembourg2026 #ThreatIntelligence #DetectionEngineering #BrowserSecurity #CyberSecurity #Infosec

Mozilla Firefox uses AI to hunt bugs and suddenly zero days do not feel so untouchable

https://fed.brid.gy/r/https://nerds.xyz/2026/04/firefox-ai-bug-hunting/

โš ๏ธ Extensions hijack sessions instead of just stealing data At least 12 fake #TikTok downloader extensions inject scripts to capture Facebook session cookies, enabling full account takeover without credentials across Chrome and Edge installs. #ransomNews #BrowserSecurity #SessionHijacking

Wie Island Enterprise Browser vertrauenswรผrdige DLLs validiert: Einblick in die Implementierung

Welche DLLs darf ein sicherheitsorientierter Browser laden โ€“ und wie lรคsst sich das zuverlรคssig durchsetzen? Entwickler beim Island Enterprise Browser sind dieser Frage systematisch nachgegangen und haben dabei tief in Windows-Interna geschaut.

https://www.all-about-security.de/wie-island-enterprise-browser-vertrauenswuerdige-dlls-validiert-einblick-in-die-implementierung/

#browser #browsersecurity #DLLs

Island Enterprise Browser erklรคrt: Validierung von DLLs

Entdecken Sie die Verfahren des Island Enterprise Browsers zur Prรผfung und Validierung von DLL-Dateien fรผr maximale Sicherheit.

All About Security Das Online-Magazin zu Cybersecurity (Cybersicherheit). Ransomware, Phishing, IT-Sicherheit, Netzwerksicherheit, KI, Threats, DDoS, Identity & Access, Plattformsicherheit

New by me: Secure Browsers Push Zero Trust Past the Login Screen

I wrote about why secure browsers matter beyond just getting a user signed in. If modern work happens in the browser, then trust decisions, session controls, and data protections need to keep happening there too.

https://www.kylereddoch.me/blog/secure-browsers-push-zero-trust-past-the-login-screen/

#Cybersecurity #Infosec #ZeroTrust #BrowserSecurity

Secure Browsers Push Zero Trust Past the Login Screen

Zero trust does not end when a user signs in. Secure browsers help enforce trust during the live session, where users are actually clicking, copying, uploading, downloading, and moving sensitive data.

CybersecKyle

Google Chrome Bolsters Defenses Against Infostealer Cookie Heists

Google Chrome just got a major security boost with its new Device Bound Session Credentials feature, designed to prevent infostealers from swiping your session cookies and letting hackers impersonate you without a password. This update is a game-changer in the fight against cookie heists and stolen loginโ€ฆ

https://osintsights.com/google-chrome-bolsters-defenses-against-infostealer-cookie-heists?utm_source=mastodon&utm_medium=social

#Infostealer #SessionCookieSecurity #DeviceBoundSessionCredentials #GoogleChrome #BrowserSecurity

Google Chrome Bolsters Defenses Against Infostealer Cookie Heists

Google Chrome fights infostealer cookie heists with Device Bound Session Credentials, bolstering defenses - learn how this update protects your online security now.

OSINTSights
LinkedIn hit with class action over hidden browser scan of 6,000 extensions: Class action filed April 6 alleges LinkedIn secretly scanned Chrome users for 6,000 extensions and routed device fingerprints to undisclosed third parties. https://ppc.land/linkedin-hit-with-class-action-over-hidden-browser-scan-of-6-000-extensions/ #LinkedIn #ClassAction #PrivacyIssues #DataProtection #BrowserSecurity
LinkedIn hit with class action over hidden browser scan of 6,000 extensions

Class action filed April 6 alleges LinkedIn secretly scanned Chrome users for 6,000 extensions and routed device fingerprints to undisclosed third parties.

PPC Land