BETA
THIS IS A BETA EXPERIENCE. OPT-OUT HERE

More From Forbes

Edit Story

New Google Chrome Security Warning For 3 Billion Users—Act Now

Following


There’s a danger that with so many security alerts hitting the headlines, warning apathy can kick in. Yet that would be a mistake, a big one. Whether it’s dealing with the fallout of a billion stolen passwords, hidden malware threats for Gmail and Outlook users or attacks against PayPal accounts, you need to take them all seriously. Which is why you really shouldn’t ignore this latest security alert for billions of Google Chrome web browser users across all platforms except iOS—here’s what you need to know and do.

ForbesNew Password Hack Warning—Act Now If Yours Is On This List

Google Chrome Browser Security Alert

It’s only been a week since the last security update warning for Chrome browser users dropped, and now we are back in the same place again. Google has confirmed that two high-severity security vulnerabilities impacting all users of the application across the Android, Linux, macOS and Windows operating systems have been discovered by external security researchers. As such, Google has taken action to start updating all applications to take Chrome to versions 132.0.6834.110/111 for Windows and Mac, 132.0.6834.110 for Linux, and 132.0.6834.122 for Android. These updates will, Google said, “roll out over the coming days/weeks.” I wouldn’t recommend you wait that long, however, given the nature of the vulnerabilities in question.

The vulnerabilities are:

CVE-2025-0611 which is a heap-based overflow vulnerability that takes the form of an object corruption in the V8 Javascript rendering engine of Chrome. The vulnerability earned a researcher known only as 303f06e3, who disclosed it to Google, a $11,000 bounty.

CVE-2025-0612 which earned Alan Goodman a bounty of $8,000, is an out of bounds memory access vulnerability in the same V8 engine.

The latter, SecurityVulnerability.io experts said, can be “potentially exploited by attackers through a specially crafted HTML page, leading to heap corruption. Such vulnerabilities may allow remote attackers to execute arbitrary code, posing significant security risks to users who visit malicious or compromised web pages,” while the first is so serious that “it is crucial for users to update their browsers to maintain security and prevent exploitation.”

ForbesGoogle’s Chrome Security Update Failure—What You Need To Do Now

Act Now—Update Your Google Chrome Browser Immediately To Stay Secure

Although, as already mentioned, the security updates for Google Chrome will start rolling out soon, it’s not soon enough for me and shouldn’t be for you, either, given the severity of the vulnerabilities concerned. I would, therefore, recommend you kickstart that update process right now. Here’s what you need to do:

Go to the Help|About option in your Google Chrome menu and this will automatically start a check for any updates as well as initiate the download process. However, the most critical part of that process comes after the download and that’s the update activation. To ensure this you must restart your browser, save any tabs you have open, and do that to be protected. The following screenshots show how to update your Google Chrome browser and activate the new security fixes.

ForbesGoogle ‘Perpetual Hack’ Attack Steals Passwords And 2FA—Act Now
Follow me on Twitter or LinkedInCheck out my website or some of my other work here

Join The Conversation

Comments 

One Community. Many Voices. Create a free account to share your thoughts. 

Read our community guidelines .

Forbes Community Guidelines

Our community is about connecting people through open and thoughtful conversations. We want our readers to share their views and exchange ideas and facts in a safe space.

In order to do so, please follow the posting rules in our site's Terms of Service.  We've summarized some of those key rules below. Simply put, keep it civil.

Your post will be rejected if we notice that it seems to contain:

  • False or intentionally out-of-context or misleading information
  • Spam
  • Insults, profanity, incoherent, obscene or inflammatory language or threats of any kind
  • Attacks on the identity of other commenters or the article's author
  • Content that otherwise violates our site's terms.

User accounts will be blocked if we notice or believe that users are engaged in:

  • Continuous attempts to re-post comments that have been previously moderated/rejected
  • Racist, sexist, homophobic or other discriminatory comments
  • Attempts or tactics that put the site security at risk
  • Actions that otherwise violate our site's terms.

So, how can you be a power user?

  • Stay on topic and share your insights
  • Feel free to be clear and thoughtful to get your point across
  • ‘Like’ or ‘Dislike’ to show your point of view.
  • Protect your community.
  • Use the report tool to alert us when someone breaks the rules.

Thanks for reading our community guidelines. Please read the full list of posting rules found in our site's Terms of Service.