logo

Google Publishes Exploit Code for Unfixed Chromium Vulnerability

ID: 08d69ab3-1c2f-5839-9ce3-45c123a36fc0

STIX ID: report--08d69ab3-1c2f-5839-9ce3-45c123a36fc0

Feed Name: Cyber Press

Threat Score
75/100

Date Published: 2026-05-22

Date Updated: 2026-05-22

Author: Lucas Martin

...
...

Google published proof-of-concept exploit code for a critical, still-unpatched Chromium Browser Fetch API vulnerability that allows malicious Service Workers to spawn never-terminating background fetch tasks, enabling continuous remote JavaScript execution and converting visited browsers into browser-based botnet nodes across Chromium-based browsers; the report details the attack chain, abuse scenarios (DDoS, proxying, traffic redirection, monitoring), affected browsers, and interim mitigations such as restricting Service Workers, disabling background fetch, network monitoring, and browser isolation.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.