logo

Chrome adopts app-bound encryption to stymie cookie-stealing malware

ID: f196e5b3-811c-5bb6-a9ff-ae4b2ef16082

STIX ID: report--f196e5b3-811c-5bb6-a9ff-ae4b2ef16082

Feed Name: The Register (Security)

Date Published: 2024-07-31

Date Updated: 2026-04-26

Author: Connor Jones

...
...

Google introduced app-bound encryption in Chrome 127 for Windows to protect cookies and other sensitive data from infostealer malware by binding decryption to Chrome’s identity and the device, complementing device-bound session cookies, enhanced download warnings, and event logs to raise attacker effort and detection likelihood; Google plans to extend this protection to tokens, passwords, and payment data, with guidance and policy options for users who require device roaming.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.