Attackers are weaponizing the gap between Chromium fixes and Chrome patches
Summary
Attackers are using a new toolkit called BlueMoon that chains together multiple vulnerabilities in Chrome browsers and Windows to gain full admin control of computers through a single phishing link click. The vulnerabilities were already fixed in the open-source Chromium codebase (the underlying code that Chrome is built from), but remained unpatched in the released Chrome versions, creating a dangerous window where attackers powered by AI could reverse-engineer and weaponize exploits before users received patches.
Classification
Original source: https://www.csoonline.com/article/4220939/attackers-are-weaponizing-the-gap-between-chromium-fixes-and-chrome-patches.html
First tracked: September 11, 2026 at 02:01 AM
Classified by LLM (prompt v3) · confidence: 95%