Search
Close this search box.
Search
Close this search box.

Beware! 2.5 Billion Google Chrome Users are at Risk

Chrome Users Under Risk

Google Chrome is a web browser that is used by billions of people all over the world. Imperva Red, a cyber security company, found a security flaw in Google Chrome and Chromium-based browsers. This puts the data of more than 2.5 billion users at risk.

This flaw, which the company calls CVE-2022-3656, made it possible for sensitive files, like crypto wallets and cloud provider credentials, to be stolen.

Read More: Google Cloud AI Tools for Retailers

“The vulnerability was found through a review of how the browser interacts with the file system. Specifically, the review looked for common flaws in how browsers handle symlinks,” the blog says.

What is a Symlink?

A symbolic link, or symlink, is what Imperva Red calls a file that points to another file or directory. It tells the operating system that the linked file or directory should be treated as if it were at the location of the symlink. It says that a symlink can be used to make shortcuts, change the path to a file, or arrange files in a more flexible way.

But if these links are not handled properly, they can also be used to open security holes.

In the case of Google Chrome, the problem was caused by how the browser handled symlinks when it worked with files and directories. In particular, the browser didn’t check if the symlink pointing to a place that wasn’t meant to be accessible. This made it possible for sensitive files to be stolen, as explained in the blog post.

How Symlinks Affected Google Chrome?

The company says that an attacker could make a fake website that offers a new crypto wallet service. This is how the vulnerability affected Google Chrome. The website could then trick the user into making a new wallet by asking them to download their “recovery” keys.

Read Also: OpenAI Working on Paid Pro ChatGPT Version

These keys would actually be a zip file that contained a symlink to a private file or folder on the user’s computer, such as a cloud provider password. “When the user unzips and submits the “recovery” keys back to the website, the symlink is processed, and the attacker has access to the sensitive file,” the researchers write. blog says.

What should Chrome Users do?

Imperva Red says it told Google about the security hole, and the problem was fixed in Chrome 108. Users should always keep their software up to date to protect themselves from these kinds of weaknesses.


Subscribe to Our Newsletter

Related Articles

Top Trending

Historical Events and Famous People Born on May 29
Discover the Historical Events and Famous People Born on May 29
May 29 Zodiac
May 29 Zodiac: Lucky Number, Color and Relationship of Gemini
ftasiatrading saving tips
Top Ftasiatrading Saving Tips For Ecommerce Success
traceloans.com credit score
Improving Your Credit Score on Traceloans.com: Tips for Bad Credit Borrowers
unblocked games granny
Play Granny Unblocked: Online Game Fun With Unblocked Games Granny

LIFESTYLE

Swim Academy in Amman
How to Choose the Right Swim Academy in Amman?
Shopping in Madrid
Shopping in Madrid: From Exclusive Boutiques to Vintage Markets: A Shopping Lover's Guide
how long does dermaplaning last
How Long Does Dermaplaning Last? All About Dermaplaning Duration
Selling Used Designer Handbags
10 Expert Tips for Selling Your Used Designer Handbags for Top Dollar
Layer Sunscreen with Makeup
How to Layer Sunscreen with Makeup for All-Day Protection?

Entertainment

unblocked games granny
Play Granny Unblocked: Online Game Fun With Unblocked Games Granny
how old was jennifer aniston in friends
How Old Was Jennifer Aniston in Friends: Unveiling Rachel Green's Age
mission impossible final reckoning box office record
Tom Cruise Celebrates Record ‘Mission: Impossible’ Finale
hyperpigmentation meme
Hyperpigmentation Meme Trend: TikTok and YouTube Videos Taking Over The Internet
jennifer tilly net worth
Jennifer Tilly Net Worth Breakdown: RHOBH Star's Simpsons Fortune Revealed

GAMING

unblocked games granny
Play Granny Unblocked: Online Game Fun With Unblocked Games Granny
PC vs Console Gaming
PC vs Console Gaming: Which One Should You Choose?
Guide to Building a Custom Gaming PC
Beginner’s Guide to Building a Custom Gaming PC
sled rider 3d unblocked
Sled Rider 3D Unblocked: Snow Rider 3D Game Available For Unblocked Gaming
Becoming a Professional Gamer
How to Increase Your Chances of Becoming a Professional Gamer

BUSINESS

ftasiatrading saving tips
Top Ftasiatrading Saving Tips For Ecommerce Success
what is a resale certificate
What is a Resale Certificate And How It Affects Sales Tax?
Online Business Skills Courses for Entrepreneurs
10 Must-Have Online Business Skills Courses for Entrepreneurs
Things You Need to Know About Crypto Taxes
Crypto Taxes 2025: 5 Key Things Every Investor Must Know
Attract Neighborhood Customers
Give Your Local Business a Boost: 5 Ways to Attract Neighborhood Customers

TECHNOLOGY

Guide to Building a Custom Gaming PC
Beginner’s Guide to Building a Custom Gaming PC
Best Thermal Monocular
ATN BlazeSeeker vs BlazeTrek: Which Is the Best Thermal Monocular
Autonomous Cybersecurity with AI
10 Ways Cybersecurity Is Becoming Autonomous with AI
Psychological Impacts of Metaverse
7 Psychological Impacts of Spending Time in the Metaverse
musk hypersonic tunnel replaces air travel
Goodbye Flights? Musk Plans $25B High-Speed Tunnel in U.S.

HEALTH

Physician Contract Negotiations
What Are the Common Red Flags in Physician Contract Negotiations?
Who Benefits Most from In-Home Care Services
Who Benefits Most from In-Home Care Services
Normal Pressure Hydrocephalus Billy Joel Treatment
Billy Joel’s Diagnosis: What Is Normal Pressure Hydrocephalus?
China Pledges $500M to WHO to Boost Global Health
China Pledges $500M to WHO to Boost Global Health Over 5 Years
Mental Health Tips for Students
Mental Health Tips for Students Struggling with Assignments