2 minmedium
Cyber Centre Daily Advisory Digest — 2026-03-24 (2 advisories)
The Canadian Centre for Cyber Security issued a daily digest highlighting recent security updates for Google Chrome and Mozilla Firefox. Administrators are advised to update Chrome to version 146.0.7680.164/165 and Firefox to version 149 (or the respective ESR versions) to address unspecified vulnerabilities.
Conf:highAnalyzed:2026-03-24reports
Authors: Canadian Centre for Cyber Security
Key Takeaways
- Google released a security advisory for Chrome Desktop versions prior to 146.0.7680.164/165.
- Mozilla released security advisories for Firefox versions prior to 149 and Firefox ESR versions prior to 115.34 and 140.9.
- Users and administrators are strongly encouraged to apply the necessary browser updates.
Affected Systems
- Google Chrome Desktop (Windows/Mac) prior to 146.0.7680.164/165
- Google Chrome Desktop (Linux) prior to 146.0.7680.164
- Mozilla Firefox prior to 149
- Mozilla Firefox ESR prior to 115.34
- Mozilla Firefox ESR prior to 140.9
Detection Availability
- YARA Rules: No
- Sigma Rules: No
- Snort/Suricata Rules: No
- KQL Queries: No
- Splunk SPL Queries: No
- EQL Queries: No
- Other Detection Logic: No
N/A
Detection Engineering Assessment
EDR Visibility: None — The advisory only covers patch availability and does not provide behavioral indicators or exploit details. Network Visibility: None — No network indicators or exploit traffic signatures are provided in the advisory. Detection Difficulty: N/A — No active threat detection is described; the focus is entirely on vulnerability and patch management.
Required Log Sources
- Vulnerability Management Systems
- Patch Management Logs
Control Gaps
- Outdated browser software
False Positive Assessment
- Low
Recommendations
Immediate Mitigation
- Update Google Chrome to version 146.0.7680.164/165 (Windows/Mac) or 146.0.7680.164 (Linux).
- Update Mozilla Firefox to version 149.
- Update Mozilla Firefox ESR to version 115.34 or 140.9.
Infrastructure Hardening
- Implement automated browser updates across the enterprise to ensure timely patching of web browsers.
User Protection
- Ensure users restart their browsers to fully apply pending updates.
Security Awareness
- Educate users on the importance of keeping web browsers up to date to protect against web-based exploits.