The Chrome browser is receiving an unseen security upgrade that will be beneficial.
Google's DBSC update addresses one of the most frequently exploited vulnerabilities in browser security.
Google has discreetly released a significant browser security update, which you likely won’t even notice, and that seems to be the intention.
Device Bound Session Credentials, or DBSC, is now available in Chrome on Windows for all Google Workspace users, including individual subscribers and personal account holders. The feature is enabled by default, so there's no need to adjust any settings.
What is DBSC and why is it important?
Every time you log into a website, your browser saves a small file called a session cookie for future visits, so you don’t have to enter your credentials each time you load a new page.
The issue arises when malware on your device can capture these cookies and send them to an attacker, who can then use them to access your accounts without requiring your password, even circumventing two-factor authentication.
Such attacks are more prevalent than many realize, and they can be effective even against accounts with relatively robust security options. Fortunately, DBSC mitigates this risk by linking the session cookie to the specific device on which it was created.
An additional layer of security in the background
Thus, even if malware retrieves the session details or cookie and forwards them to someone else, the data becomes unusable outside the device where it originated. This added layer of security operates quietly in the background while you continue using Chrome throughout your day.
In my view, DBSC aligns with a broader industry movement toward eliminating traditional session cookies altogether. The World Wide Web Consortium has had an open specification for this for about three years, and Microsoft has been subtly updating Edge to incorporate the same standard.
For over five years, Shikhar has consistently made technological developments in consumer tech more comprehensible.
Microsoft is quietly enhancing Copilot, emphasizing not only its power but also its integration into your workflow. Across Microsoft 365, Copilot is being redesigned to minimize visual clutter while maximizing utility. Rather than demanding constant attention, it will function in the background when necessary, stepping in only when it offers genuine assistance. This change may seem minor, but it significantly alters the balance between feeling interrupted and feeling supported in daily work activities.
A new experiment indicates a fresh approach to rehabilitation robotics centered on experiential learning.
At a neuro-robotics lab at the University of Southern California, a small mechanical hand heard a melody for the first time and played it back successfully on the first attempt, without any sheet music, pre-loaded scores, or extensive training (via USC Viterbi). This system, known as the Musician Hand, has four fingers operated by tendons linked to small electric motors, mimicking the muscle-tendon interaction in a human hand. It was developed by doctoral candidate Hesam Azadjou under Professor Francisco Valero-Cuevas.
A new study reveals potential downsides to rapid AI responses, suggesting that the essence of the internet may be fading.
While AI provides quick answers, a recent study indicates that something vital is being lost in the process. Researchers from UC Riverside, consisting of computer and social scientists, have found that as reliance on AI for responses grows, the internet risks losing its engaging elements: human emotions, personal experiences, and nuanced, opinion-laden thought. The study assessed how AI systems like ChatGPT and Gemini handle subjective questions in comparison to traditional web searches, posing opinion-driven inquiries like whether governments should ban fossil-fuel vehicles or if the US healthcare system requires reform, and analyzed the reasoning behind each response.
Other articles
The Chrome browser is receiving an unseen security upgrade that will be beneficial.
DBSC is now enabled by default in Chrome on Windows, linking your login session cookies to your particular device, which renders stolen cookies ineffective for attackers.
