Google removes SIMD.js support from chromium

MsMpEng: Remotely Exploitable Type Confusion in Windows 8 - 10, Microsoft Security Essentials, etc.

MsMpEng: Multiple problems handling ntdll!NtControlChannel commands

Remotely Exploitable Type Confusion in Windows 8, 8.1, 10, Windows Server, etc.

Chrome 55-57 showed “download” button for all HTML5 media

LastPass Universal XSS vulnerability (just patched)

QEMU(TCG): user-to-root privesc inside VM via bad translation caching

LastPass RCE vulnerability fixed

HSTS Preload lists cause Chromium to think http://google/ is a valid domain

Google reverts TLS 1.3 support for Chrome because of MITM-Proxies

Cloudflare Reverse Proxies Are Dumping Uninitialized Memory

QEMU: virtfs permits guest to access entire host filesystem

Google Goes Public with Unpatched Microsoft Edge and IE Vulnerability

Chrome now opens pdf files without way to opt out

Chrome Widevine DRM can no longer be disabled

Kaspersky: SSL interception differentiates certificates with a 32bit hash

Cisco: Magic WebEx URL Allows Arbitrary Remote Command Execution

Kaspersky: Local CA root is incorrectly protected

Chrome built-in build-time bomb of 10 weeks

TrendMicro starts a server in your machine and was allowing remote code execution from an HTTP request

ServiceWorker's Link leads to botnet-like persistent JavaScript worker

It is time to unlink the “Backspace” – Browser Back shortcut (2012)

LastPass: design flaw in communication between privileged and unprivileged comp

Remote stack buffer overflow in Norton Antivirus, other Symantec products

Chromium JIT compiler not preserving method behavior

“autocomplete=off is ignored on non-login input elements”

Symantec/Norton Antivirus Remote Heap/Pool Memory Corruption CVE-2016-2208

Chrome removes Backspace to go back

v8 - Support ES6 tail call elimination

Native Mac Notifications Comes to Chrome Stable

More →