Zero-Day Alert: Google Releases Chrome Patch for Exploit Used in Russian Espionage Attacks
Google has addressed a high-severity security hole in its Chrome browser for Windows with out-of-band fixes, claiming that the flaw has been used in the wild as part of attacks against Russian organizations.
The vulnerability has been identified as a case of "incorrect handle provided in unspecified circumstances in Mojo on Windows." It is listed as CVE-2025-2783. The term "Mojo" describes a group of runtime libraries that offer an inter-process communication (IPC) mechanism that is independent of platform.
As is customary, Google did not disclose any more technical details regarding the type of assaults, the threat actors responsible, or the potential targets. The issue has been fixed in Chrome for Windows, version 134.0.6998.177/.178.
Google said in a brief advisory that it is ...

