Operation AppleJeus & Other Attackers Are Putting The Squeeze on Google Chrome Zero Day

Share This Post

A Google Chrome remote code execution (RCE) zero-day vulnerability is being actively exploited by at least two threat groups, according to Google. Operation AppleJeus and Operation Dream Job have been exploiting this flaw since as early as January 4, 2022.

Originally discovered by North Korean threat actors, the vulnerability allows threat actors to reference memory addresses after they have been freed by Chrome in order to crash the application, use unexpected values, or execute arbitrary code remotely.

Tracked as CVE-2022-1096, a high-priority security patch has been released to update Google Chrome to version 99.0.4844.84 in response. All of the world’s 3,200,000,000 Chrome users are advised to ensure their browsers are updated as a matter of urgency.

iTechPost Summary: https://www.itechpost.com/articles/109748/20220328/google-chrome-security-update-cve-2022-1096-high-severity-zero.htm



Reach out to our incident response team for help

More To Explore

Information Security News – 6/2/2025

Why Layoffs Increase Cybersecurity Risks Article Link: https://www.helpnetsecurity.com/2025/05/26/layoffs-cybersecurity-risks/ The CISO’s Dilemma: Balancing Access, Security, and Operational Continuity Article Link: https://www.forbes.com/councils/forbestechcouncil/2025/05/27/the-cisos-dilemma-balancing-access-security-and-operational-continuity/ Massive Data Breach Exposes 184

Information Security News – 5/19/2025

Attackers Lace Fake Generative AI Tools With ‘Noodlophile’ Malware Article Link: https://www.darkreading.com/endpoint-security/attackers-fake-generative-ai-tools-malware CISA Reverses Decision on Cybersecurity Advisory Changes Article Link: https://www.infosecurity-magazine.com/news/cisa-reverses-decision-advisory/ FBI Warns That

Do You Want to Shore Up Your Defenses?

We're opening our first round of threat hunting engagements to 100 organizations. Sign up or join the wait list here.