INSPECTING ARCHIVED INTELLIGENCE (OUTDATED VERSION).

Chrome Zero-Day Exploit Enables Code Execution Inside Sandbox

| 2026-09-10 10:52 CRITICAL HIGH
Executive Summary AI-generated
The latest incident data reveals a critical update to the Chrome browser, addressing 230 security vulnerabilities including one actively exploited in the wild as CVE-2026-87491. This vulnerability allows remote attackers to execute arbitrary code inside the browser's sandbox via a crafted HTML page. The update also fixes five other vulnerabilities rated Critical and includes 230 security fixes, with one known to be actively exploited. Google is aware of the issue and has been working on addressing it since the start of the year, including fixing flaws like CVE-2026-2441 and CVE-2026-3909.
Technical Mitigations AI-generated
* Use a reputable antivirus software and keep your operating system (Windows, macOS, or Linux) up to date with the latest security patches. * Be cautious when clicking on links from unknown sources, as they may contain malicious websites that can exploit vulnerabilities like CVE-2026-87491. * Regularly update extensions and add-ons installed in Chrome, such as Malwarebytes Browser Guard, which can help block phishing pages and malicious sites automatically. * Use a web application firewall (WAF) or a security software to scan your browser for potential threats before they can do any harm.
Technical Observables
Intelligence Metadata
Actors / Malware / CVEs / Campaigns
ShinyHuntersShinyHunters CVE-2026-87491CVE-2026-87491 CVE-2026-87639CVE-2026-87639 CVE-2026-87464CVE-2026-87464 CVE-2026-87488CVE-2026-87488 CVE-2026-5281CVE-2026-5281 CVE-2026-3910CVE-2026-3910 CVE-2026-85046CVE-2026-85046 CVE-2026-87628CVE-2026-87628 CVE-2026-3909CVE-2026-3909 CVE-2026-87527CVE-2026-87527 CVE-2026-2441CVE-2026-2441 CVE-2026-11645CVE-2026-11645 CVE-2026-87438CVE-2026-87438
Target & Sectors
NORTH_AMERICA NORTH_AMERICA technologytechnology
Incident Timeline
‎2016 August
Threat actors exploited a zero-day vulnerability in the Chrome browser to target Windows Server 2016.
infrastructure Windows
tactic T1584.004 - Server
infrastructure 2016 Windows Server
‎February 2026
Threat actors exploited a use after free vulnerability in the CSS rendering engine of Google Chrome.
vulnerability CVE-2026-2441
organisation CSS
general_metric 8.8 score
‎March 2026
Threat actors exploited a zero-day vulnerability in the Skia 2D graphics library to target Chrome browsers.
vulnerability CVE-2026-3909
vulnerability CVE-2026-3910
general_metric 8.8 score
organisation Skia 2D
‎April 2026
Threat actors exploited a use-after-free bug in Dawn, the WebGPU component used for graphics processing.
tactic T1059.007 - JavaScript
vulnerability CVE-2026-5281
vulnerability CVE-2026-11645
vulnerability CVE-2026-85046
general_metric 8.8 score
organisation WebGPU
organisation CVSS
‎June 2026
Google has released an updated version of Chrome Stable to address multiple zero-day vulnerabilities in its WebGPU component.
tactic T1059.007 - JavaScript
vulnerability CVE-2026-5281
vulnerability CVE-2026-11645
vulnerability CVE-2026-85046
general_metric 8.8 score
organisation WebGPU
organisation CVSS
infrastructure Windows
infrastructure Linux
organisation Windows and Mac
infrastructure 8.8
infrastructure 152.0.7977
‎August 4, 2026
Security researcher Salvatore Gulizia reported the Chrome zero-day flaw on August 4, 2026.
financial $1,000 $ bug bounty
‎August 6, 2026
Seoul National University's researchers were informed of the vulnerability on August 6, 2026.
organisation Seoul National University
‎2026/08/06
Seoul National University researchers reported a zero-day vulnerability in Chrome on August 6, 2026.
organisation Seoul National University
‎September 04, 2026
Google fixes the sixth actively exploited Chrome zero-day of 2026.
‎Sep 04, 2026
Threat actors exploited a previously unknown zero-day vulnerability in the Google Chrome browser.
‎Sep 09, 2026
Threat actors exploited a previously unknown zero-day vulnerability in the Google Chrome browser to target users.
‎September 9, 2026
Threat actors exploited a zero-day vulnerability in the Google Chrome browser.
data_breach 0 September
‎September 09, 2026
Google fixes the seventh actively exploited Chrome zero-day of 2026.
‎2026/09/09
Threat actors exploited a zero-day vulnerability in the Google Chrome browser to target users.
general_metric 7 Windows
organisation BleepingComputer
general_metric 1 Video
general_metric 2 Video
general_metric 3 Video
general_metric 4 Video
general_metric 5 Video
general_metric 6 Video
‎2003 - 2026
Threat actors used a zero-day exploit in the Chrome browser to target users through social media and feeds.
organisation Social & Feeds
‎2026/09/10
Google released security updates to patch 12 vulnerabilities, including one that has come under active exploitation in the wild.
organisation Malwarebytes Browser Guard
infrastructure Microsoft 365
organisation BigBear Microsoft 365
organisation MFA
victims 258 organizations
organisation Unicode
infrastructure Windows
infrastructure Linux
infrastructure 153.0.8010
organisation Windows and Mac
infrastructure Macos
organisation Stack Protection
organisation Windows Registry
organisation the Windows Registry
organisation Stable Desktop
organisation Seoul National University's
infrastructure 152.0.7977
organisation SonicWall
organisation HTML
organisation Google Chrome
organisation the NIST National Vulnerability Database
organisation NVD
organisation CVE
organisation Chrome
organisation WebAssembly
organisation Google
organisation CVE-2026
organisation WebGL
organisation Cast
infrastructure 8.8
organisation Chrome’s V8
organisation Skia 2D
organisation Chrome’s
organisation Critical
organisation Vulnerability / Browser Security
organisation Microsoft Edge, Brave,
organisation CVE-2026-85046
organisation Patch Actively
organisation CSS
organisation Chromium
organisation WebGPU
organisation WebPackaging
organisation OpenAI Codex Security
financial $2,500 $ bug bounty
organisation EU CRA
organisation Magento
organisation Adobe
threat_actor ShinyHunters
organisation DMV
organisation ShieldCrash
organisation New Microsoft Defender '
organisation DoppelCart
organisation IP
organisation safely.jpg
organisation ThreatLocker
organisation Threat Analysis Group
organisation The Blue Report 2026
organisation CTI
organisation Upcoming Webinar
organisation Astra
financial $20 $ subscription
organisation Freestar.com
organisation CacheStorage
organisation DevTools
organisation SecurityAffairs
‎September 2026
Microsoft released patches for 966 vulnerabilities in its software on September 2026.
general_metric 2 Video
organisation Microsoft
general_metric 966 flaws
Tactical Metrics
Metrics
infrastructure
‎Windows
Affected Product
Metrics
infrastructure
‎Linux
Affected Product
Metrics
infrastructure
‎153.0.8010
Software Version
Metrics
infrastructure
‎Macos
Affected Product
Metrics
financial
2,500
$ Bug Bounty
Metrics
infrastructure
‎8.8
Software Version
Metrics
infrastructure
‎Microsoft 365
Affected Product
Metrics
victims
258
Organizations
Metrics
infrastructure
2,016
Windows Server
Metrics
data_breach
0
September
Metrics
financial
20
$ Subscription
Metrics
infrastructure
‎152.0.7977
Software Version
Metrics
financial
1,000
$ Bug Bounty