There is the latest Chrome 128 update: update your browser soon

Last week, Google released an update Chrome 128 which brings important updates by patching susceptibility#atfp_close_translate_span# Zero-Day. Now, Google is re-launching the update for Chrome 128 which fixes the other four security vulnerabilities. While none of these vulnerabilities have been exploited wildly, these improvements are an important step to maintain user security. Other Chromium-based browsers are expected to follow this step soon.
List of vulnerabilities patched in chrome 128
In the update published in Chrome Releases Blog, Prudhvikumar Bommana revealed four vulnerabilities discovered by external security researchers and reported to Google. Here is a detailed description of the four vulnerabilities:
1. Confusion of types on the JavaScript V8 engine
This vulnerability is categorized as High risk by Google and found in the machine V8 JavaScript. V8 is a machine used by Chrome to run JavaScript, the programming language that underlies many web applications. This vulnerability is reported in two different CVE numbers, namely CVE-2024-7969 and CVE-2024-8194. Type confusion occurs when code tries to access memory using the wrong data type, which can lead to unwanted code execution.
2. Buffer overflow on SKIA 2D graphics library
The other two vulnerabilities found in the library SKIA, an open-source 2D graphics library used by Chrome for rendering. This buffer overflow vulnerability is reported in CVE-2024-8193 and CVE-2024-8198. Buffer Overflow is a condition in which the data entered into the buffer exceeds its capacity, causing the data to spill into other areas of memory that can be exploited to run malicious code.
How to make sure the Chrome 128 update in your browser?
Chrome usually updates itself automatically when a new version is available. However, if your browser hasn’t updated, you can manually trigger the update by opening the three-dot menu in the top right corner and navigating to help > About Google Chrome. There, Chrome will check for updates and install the latest version if available.
Other Chromium-Based Browsers: What’s the Security Status?
Apart from Chrome, there are several other popular browsers that are also based on Chromium, the same machine used by Chrome. Among them are Brave, Microsoft Edge, Opera, and Vivaldi. What is their security status?
1. Brave and Microsoft Edge
Brave and Microsoft Edge It has switched to Chromium 128, but only got to the level of security last week. This means they haven’t received an update that fixed the latest four vulnerabilities in Chrome 128. However, this browser is expected to follow the Chrome update soon.
2. Opera and Vivaldi
Opera version 113 just switched to Chromium 127, while Vivaldi version 6.8 still using Extended Stable Channel from Chromium version 126. However, Vivaldi version 6.9 has been updated and is now based on Chromium 128 latest, so safe from the vulnerabilities that have been found.
All these browsers are safe from vulnerability CVE-2024-7971 Zero-Day from the previous week, suggests that the developers of Chromium-based browsers are committed to keeping their users safe.
Why is it important to always update the browser?
Whenever a new version of the browser is released, especially for security improvements, it is very important for users to update immediately. Zero-Day Vulnerability Is a type of vulnerability that the developer has not known the first time it is exploited by an attacker. This means that users who are not updating their software are at high risk of being hit by an attack.
By updating the browser periodically, users can ensure that they are always protected from the latest security threats. In addition, updates also often bring performance improvements and new features that can enhance the browsing experience.
How do security researchers find this vulnerability?
The vulnerability found in the Chrome 128 update comes from external security researchers who work with Google. The researcher proactively looked for loopholes in the software and reported it to the developer for immediate repair. This is part of the technology industry’s efforts to stay ahead in the fight against cybercriminals.
Google, like many other major technology companies, has bug bounty program where they offer gifts to researchers who find and report security vulnerabilities. This program not only helps in finding bugs faster, but also encourages more researchers to contribute to maintaining the safety of products used by millions of people around the world.
the financial impact of security vulnerabilities
Security vulnerabilities such as those found in Chrome 128 could have a significant financial impact, both for companies and users. Successful attacks can lead to data theft, which in turn can result in huge financial losses. For companies, the cost of dealing with cyber attacks can reach millions of dollars, including recovery costs, legal fines, and loss of customer trust.
For individual users, the main risk is identity theft and unauthorized access to financial accounts. Although it may not always be easy to measure in rupiah, the losses suffered can be very significant, both financially and emotionally.
How can users protect themselves?
In addition to ensuring that their software is always updated, users can also protect themselves with a few additional steps:
1. Using Password Manager
password manager or Password Manager Can help users save and manage strong and unique passwords for each account. This is important because if one account is hacked, the attacker will not be able to access another account that uses a different password.
2. Activate two-factor authentication (2FA)
Two Factor Authentication (2FA) is an additional layer of security that requires the user to provide two types of information to access the account. This is usually a password plus a code sent to a user’s phone or email. With 2FA, even if your password is stolen, the attacker still needs to have access to your second device to log in.
3. Avoid suspicious websites and email attachments
Many cyberattacks start with Phishing, where the attacker tries to deceive the user to provide their personal information or download malicious software. Users should always be careful with unknown emails and websites, and should not click on links or open attachments unless they believe that the source is safe.
The future of browser security
Cybersecurity is a growing field, and new threats appear every day. Browsers such as Chrome and other Chromium-based ones play an important role in protecting users from these threats. With regular updates and cooperation with the security community, it is hoped that threats can be identified and corrected before they can be exploited by cybercriminals.
However, users also have a responsibility to remain vigilant and proactive in protecting themselves. Technology can only provide protection as far as possible; In the end, it is the decisions and habits of good users that will determine how safe they are in the digital world.
Conclusion Update Chrome 128
The Chrome 128 update brings important fixes to the four security vulnerabilities discovered by external researchers. Although there are no reports of this vulnerability being exploited wildly, it is very important for users to update their browsers immediately. By keeping the software up to date and taking preventive measures, users can minimize the risk of growing security threats.
For other Chromium-based browser users, it is also important to ensure that they run the latest version of their browser for the best protection. Cybersecurity is a shared responsibility, and with the cooperation between developers, security researchers, and users, the digital world can be a safer place for everyone.























