Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Critical Chrome Vulnerability Earns Researcher $43,000

Posted on September 11, 2025September 11, 2025 By CWS

Researchers have earned important rewards from Google for reporting two probably critical vulnerabilities discovered within the Chrome net browser. 

Google this week rolled out a Chrome replace that fixes two safety defects reported by exterior researchers, together with a critical-severity bug within the browser’s Serviceworker part, for which a $43,000 bug bounty reward was paid.

Tracked as CVE-2025-10200 and reported by Looben Yang, the vital flaw is described as a use-after-free challenge. Most of these reminiscence corruption vulnerabilities seem when this system makes an attempt to entry reminiscence that has been freed.

By timing reminiscence operations, attackers can exploit use-after-free bugs to put malicious code within the freed reminiscence, probably reaching arbitrary code execution and full system compromise.

The newest Chrome replace additionally resolves CVE-2025-10201, a high-severity inappropriate implementation in Mojo, for which Google handed out a $30,000 reward. This flaw was reported to Google by Sahan Fernando and an nameless researcher. 

Whereas these could appear to be important rewards, Google just lately paid out a $250,000 bug bounty for a Chrome vulnerability that may be exploited to flee the online browser’s sandbox.  

Google makes no point out of both of the newly patched vulnerabilities being exploited within the wild, however customers are suggested to replace their browsers as quickly as potential.

The Chrome replace is rolling out as variations 140.0.7339.127/.128 for Home windows, variations 140.0.7339.132/.133 for macOS, and 140.0.7339.127 for Linux.Commercial. Scroll to proceed studying.

Associated: Google Patches Excessive-Severity Chrome Vulnerability in Newest Replace

Associated: Excessive-Severity Vulnerabilities Patched in Chrome, Firefox

Associated: Apple Patches Safari Vulnerability Flagged as Exploited Towards Chrome

Security Week News Tags:Chrome, Critical, Earns, Researcher, Vulnerability

Post navigation

Previous Post: New Attack Technique That Enables Attackers To Exfiltrate Git Credentials In Argocd
Next Post: Cornwell Quality Tools Data Breach

Related Posts

Webinar Today: Why Context is a Secret Weapon in Application Security Posture Management Security Week News
Hackers Target Popular Nx Build System in First AI-Weaponized Supply Chain Attack Security Week News
NASCAR Confirms Personal Information Stolen in Ransomware Attack Security Week News
Mitel Patches Critical Flaw in Enterprise Communication Platform Security Week News
US, Allies Push for SBOMs to Bolster Cybersecurity Security Week News
Iranian Man Pleads Guilty to Role in Baltimore Ransomware Attack Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Threat Actors Leveraging Open-Source AdaptixC2 in Real-World Attacks
  • Google Pixel 10 Adds C2PA Support to Verify AI-Generated Media Authenticity
  • Webinar Today: Breaking AI – Inside the Art of LLM Pen Testing
  • Senator Wyden Urges FTC to Probe Microsoft for Ransomware-Linked Cybersecurity Negligence
  • Cisco Patches High-Severity IOS XR Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • September 2025
  • August 2025
  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Threat Actors Leveraging Open-Source AdaptixC2 in Real-World Attacks
  • Google Pixel 10 Adds C2PA Support to Verify AI-Generated Media Authenticity
  • Webinar Today: Breaking AI – Inside the Art of LLM Pen Testing
  • Senator Wyden Urges FTC to Probe Microsoft for Ransomware-Linked Cybersecurity Negligence
  • Cisco Patches High-Severity IOS XR Vulnerabilities

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News