







Harden chromium (somewhat) for privacy and security (and performance)
secureblue/Trivalent
A security-focused, Chromium-based browser for desktop Linux inspired by Vanadium.
Project: IPFS Chromium implementation | Little Bear Labs | Little Bear Labs
Faster, more secure, more accessible IPFS links in Chromium-based browsers.

b4a1ffc010a8aee9b98d4fdcf3d396b592cffa46 - chromium/src - Git at Google
Chromium is an open-source browser project that aims to build a safer, faster, and more stable way for all users to experience the web.
Announcing Supporters of Chromium-based Browsers
Since Google announced the Chromium project in 2008, we have been excited to build on the great foundations of open-source web browsers and contribute to the continued d…

Decoupling Extensions from Chrome: The Journey to a Modular Extensions Layer · Issue #74 · Igalia/webengineshackfest
Facilitator(s) @MyidShin @ltilve Summary This talk presents the ongoing effort to decouple Chromium Extensions from the Chrome layer, enabling a more modular and embeddable architecture. We’ll cove...
chrobalt_sandbox/.github/README.md at main · youtube/chrobalt_sandbox
Cobalt mirror of the Chromium source. Contribute to youtube/chrobalt_sandbox development by creating an account on GitHub.
Stronger with every update: How we’re making Chrome and the web safer in the AI Era
Chrome uses Gemini AI to automate vulnerability discovery, triage, and patching, accelerating updates to match modern security risks.

ChromeAlone/BLOWTORCH at main · praetorian-inc/ChromeAlone
A tool to transform Chromium browsers into a C2 Implant - praetorian-inc/ChromeAlone
ChromeAlone - A Browser Based Cobalt Strike Like C2 Tool That Turns Chrome Into a Hacker’s Playground
ChromeAlone — a Chromium-based browser Command & Control (C2) framework capable of replacing traditional offensive security implants like Cobalt Strike.

Chromium Docs - The Rule Of 2
When you write code to parse, evaluate, or otherwise handle untrustworthy inputs from the Internet — which is almost everything we do in a web browser! — we like to follow a simple rule to make sure it's safe enough to do so. The Rule Of 2 is: Pick no more than 2 of
Titan in depth: Security in plaintext | Google Cloud Blog
While there are no absolutes in computer security, we design, build and operate Google Cloud Platform (GCP) with the goal to protect customers' code and data. We harden our architecture at multiple layers, with components that include Google-designed hardware, a Google-controlled firmware stack, Google-curated OS images, a Google-hardened hypervisor, as well as data center physical security and services.

How an Omitted Write Barrier in V8 Turns Into RCE in Chrome: CVE-2026-5865
In March, our system detected a severe vulnerability in V8, the JavaScript engine used by Chrome. This vulnerability enabled remote code execution against billions of Chrome users worldwide.

gorhill/uBlock
uBlock Origin - An efficient blocker for Chromium and Firefox. Fast and lean.
Linux Firewalls: How to Actually Secure a Cloud Server (iptables, nftables, firewalld, ufw)
A practical guide to the four major Linux firewall technologies - iptables, nftables, firewalld, and ufw. Covers real-world cloud server hardening with concrete examples, from locking down SSH to b...

Isolated Web Apps (IWA) | Chrome for Developers
Isolated Web Apps allow for a high-trust security model for web apps allowing for access to high-trust APIs like Direct Sockets and Controlled Frame.
