News Security

Kaspersky Discovers Sophisticated Chrome Zero-Day Exploit Used in Active Attacks

Kaspersky

Security firm warns users to update Google Chrome immediately

Kaspersky has uncovered a highly advanced zero-day vulnerability in Google Chrome that allowed attackers to bypass critical security protections with minimal user interaction. The flaw, identified as CVE-2025-2783, was used in a targeted espionage campaign dubbed “Operation ForumTroll.”

“This vulnerability stands out among the dozens of zero-days we’ve discovered,” said Boris Larin, principal security researcher at Kaspersky GReAT. “The exploit bypassed Chrome’s sandbox protection without performing any obviously malicious operations—it’s as if the security boundary simply didn’t exist.”

Google has patched the flaw as of March 25, 2025, and urges all users to update their browsers immediately.

Related posts

DXC and 7AI Launch AI-Powered Agentic SOC to Redefine Managed Security Services

Enterprise IT World MEA

Tenable One Surpasses 300 Integrations, Becoming Cybersecurity’s Most Open Exposure Management Platform

Enterprise IT World MEA

Cloudflare Blocks Record-Breaking 7.3 Tbps DDoS Attack Amid Surge in Hyper-Volumetric Threats

Enterprise IT World MEA

Leave a Comment