Google Chrome Users Beware: CERT-In Warns Of Security Flaws, Remote Hacking Risk

CERT-In has issued a high-severity cybersecurity warning for Google Chrome desktop users after detecting multiple vulnerabilities that could allow hackers to execute remote attacks, steal sensitive information and compromise devices. Users on Windows, macOS and Linux have been advised to update Chrome immediately.

Post Published By: Subhash Raturi
Updated : 17 August 2026, 4:42 PM IST

New Delhi: The Indian Computer Emergency Response Team (CERT-In) has issued a high-severity security alert for Google Chrome desktop users after detecting multiple vulnerabilities that could allow hackers to remotely compromise devices, execute malicious code and steal sensitive information. The warning affects users on Windows, macOS and Linux systems running outdated Chrome versions, with authorities urging immediate browser updates to prevent possible cyberattacks.

The cybersecurity warning has raised concerns among millions of Chrome users as the browser is widely used for online banking, digital payments, office work, shopping, social media and accessing personal accounts. Security experts have advised users not to ignore the update notification as cybercriminals often target known software vulnerabilities to gain unauthorised access to devices.

CERT-In, India’s national agency responsible for responding to cybersecurity threats under the Ministry of Electronics and Information Technology (MeitY), has identified multiple security vulnerabilities in desktop versions of Google Chrome. According to the advisory, these flaws could allow attackers to execute arbitrary code remotely, gain unauthorised access to affected systems, steal confidential information and trigger denial-of-service (DoS) attacks.

The risk is considered serious because attackers may exploit these vulnerabilities without requiring physical access to a device. A user could become a target simply by opening a malicious link, visiting a specially designed webpage or interacting with harmful online content.

Hackers Can Exploit Chrome Through Malicious Websites

The major concern highlighted by CERT-In is the possibility of remote exploitation through malicious webpages and web requests. Cybercriminals can create specially crafted websites containing harmful code designed to exploit weaknesses in Chrome’s security system. If a user visits such a page, the attacker may be able to execute commands on the device without the user’s knowledge.

A successful attack could expose sensitive information stored on the computer, including saved passwords, banking details, personal files and confidential documents. In some cases, hackers may install malware, manipulate system functions, damage data or disrupt important services running on the affected device.

CERT-In has identified the vulnerabilities as being related to “use-after-free” issues, a type of memory safety flaw that occurs when software continues to access memory after it has already been released.

Such vulnerabilities can allow attackers to manipulate browser operations and execute unauthorised instructions within the system. The affected Chrome components include the V8 JavaScript engine, TabStrip, HTML processing systems, Extensions framework and Blink rendering engine.

These components play a crucial role in running websites, processing online applications and displaying web content. A security weakness in these areas can create opportunities for attackers to compromise browser functionality.

Google Chrome Users On Windows, macOS And Linux At Risk

The CERT-In warning applies to desktop Google Chrome users across multiple operating systems, including Windows, macOS and Linux. Users running older versions of Chrome are considered vulnerable.

The affected versions include Chrome builds below 151.0.7922.137/.138 for Windows and macOS users, while Linux users running versions below 151.0.7922.137 are also at risk. The warning applies not only to individual users but also to organisations, businesses, government offices and educational institutions that rely on Chrome for daily operations.

Outdated browser versions in workplace environments can create additional risks because attackers may use compromised systems to access wider networks and confidential organisational data.

How To Update Google Chrome And Stay Protected

Google has released security patches to address the reported Chrome vulnerabilities. The company has rolled out updates designed to fix the underlying security issues and reduce the possibility of exploitation by attackers.

Cybersecurity experts have advised users to install the latest Chrome version immediately because hackers frequently target publicly known vulnerabilities in outdated software. Regular software updates help protect devices against malware attacks, phishing attempts and remote hacking threats by closing security gaps identified by researchers.

Users can manually check for the latest Chrome security update by opening the browser and clicking on the three-dot menu in the top-right corner. After selecting the Help option and clicking on About Google Chrome, the browser will automatically check for available updates.

If a new version is available, Chrome will download and install the security patch. Users need to select the Relaunch option after installation to activate the update. Keeping browsers updated, avoiding suspicious links and enabling additional security features such as two-factor authentication can significantly reduce the risk of cyberattacks.

Internet browsers have become one of the most important gateways to the digital world. Millions of users depend on browsers for financial transactions, workplace communication, government services and personal activities. Because browsers handle sensitive information such as login credentials, payment details and private data, security vulnerabilities can create widespread risks.

Cybercriminals increasingly target popular software platforms because a single vulnerability can potentially affect millions of users worldwide. The latest CERT-In warning highlights the growing importance of cybersecurity awareness as online fraud, malware attacks and data theft continue to rise.

CERT-In Urges Immediate Action

CERT-In has advised Google Chrome users to update their browsers immediately and avoid continuing with vulnerable versions. Although Google has already released security fixes, devices running outdated Chrome versions may remain exposed to possible remote attacks.

The warning serves as a reminder that regular software updates, safe browsing practices and awareness about online threats are essential to protect personal information and digital identity in an increasingly connected world. As cyber threats continue to evolve, users and organisations are being advised to treat browser security updates as a priority rather than an optional maintenance task.

Location :  New Delhi

Published :  17 August 2026, 4:42 PM IST