Chrome 147 Update: Critical RCE Patch, AI Mode, Privacy Insights
Chrome 147 Update Patches Critical ANGLE Flaw and 30+ Security Gaps
- Google released Chrome version 147, addressing a critical ANGLE vulnerability (CVE-2026-6296) that could lead to arbitrary code execution, along with over 30 other security issues.
- The ANGLE flaw, a high-severity use-after-free bug in the graphics engine, was awarded a $90,000 bug bounty, posing a significant risk for remote code execution.
- Users are urged to update their Chrome browser immediately to version 147.0.7588.100 (or later) across all platforms to protect against these patched vulnerabilities.
Source: SecurityOnline.info | Date: April 17, 2026
Taboola Routes Logged-In Banking Sessions to Temu, Raising Privacy Concerns
- Taboola's ad tech platform has been observed redirecting users from financial institutions and other sensitive websites to Temu, often while maintaining their logged-in session state.
- This redirection, described as a "hidden passenger," appears as a client-side navigation initiated by Taboola's JavaScript, raising concerns about privacy and potential abuse of user session data.
- The issue highlights inherent risks in browser security and trust boundaries when third-party ad networks operate within sensitive browsing contexts.
Source: The Hacker News | Date: April 17, 2026
New Chrome Privacy Analysis Reveals Fingerprinting and Header Leak Risks
- A recent privacy analysis on Chrome revealed that browser fingerprinting and HTTP header leaks continue to pose significant risks, potentially exposing users to tracking and identification.
- Researchers demonstrated how specific browser configurations and leaked HTTP header data, even with privacy extensions, can form unique user fingerprints for cross-site tracking.
- The study emphasizes the ongoing challenge of achieving true browser privacy against advanced tracking techniques and highlights the need for continuous browser security enhancements.
Source: Cybersecurity News | Date: April 16, 2026
Google Chrome Introduces Experimental AI Mode for Enhanced Web Exploration
- Google Chrome is introducing an experimental "AI Mode" that integrates generative AI capabilities directly into the browser to enhance web exploration and productivity.
- Users can access AI features, such as summarizing articles, defining terms, or generating related content, directly from the Chrome address bar or sidebar without leaving the current page.
- This feature, part of a broader effort to leverage AI within Chrome, is rolling out as an opt-in experiment, emphasizing Google's commitment to AI-powered browsing experiences.
Source: Google Blog | Date: April 16, 2026
References
- Chrome 147 Update: Google Patches Critical $90,000 ANGLE Flaw and 30 Other Security Gaps - SecurityOnline.info
- CVE-2026-6296 - NVD/MITRE
- Hidden Passenger? How Taboola Routes Logged-In Banking Sessions to Temu - The Hacker News
- New Chrome Privacy Analysis Shows How Fingerprinting and Header Leaks Can Expose Users - Cybersecurity News
- A new way to explore the web with AI Mode in Chrome - Google Blog