Since Chromium 148, Math.tanh is now fingerprintable to link underlying OS
Summary
Chromium 148 introduces a change to Math.tanh that can be used to fingerprint the underlying operating system, raising privacy concerns.
Similar Articles
Cloudflare Turnstile requiring fingerprintable WebGL
Cloudflare's Turnstile now requires WebGL fingerprinting for device verification, blocking WebKitGTK browsers and raising privacy concerns.
@hasantoxr: I'm done paying $500 a month for anti-detect browsers after finding this. It's called CloakBrowser. A stealth Chromium …
The article introduces CloakBrowser, an open-source stealth Chromium-based browser designed to bypass bot detection systems like reCAPTCHA and Cloudflare Turnstile. It claims to offer superior stealth capabilities by patching the C++ source code rather than injecting JavaScript, positioning itself as a free alternative to expensive commercial anti-detect browsers.
@addyosmani: https://x.com/addyosmani/status/2068394292796871019
A detailed technical article explaining how modern web browsers work, focusing on Chromium's architecture including networking, parsing, rendering, and security features.
CVE-2026-40369: Arbitrary Kernel Address Increment via NtQuerySystemInformation
CVE-2026-40369 describes a vulnerability in Windows kernel's NtQuerySystemInformation function that allows arbitrary kernel address increment, enabling privilege escalation from unprivileged processes including Chrome sandbox. The exploit is deterministic on Windows 11 24H2-25H2.
Chromium publishes fixed exploit 4 years later, turns out it's actually unfixed
A security exploit in Chromium, thought to have been fixed four years ago, was found to actually remain unfixed, highlighting a significant oversight in the browser's security patching process.