Google has released Chrome 153, a major update that addresses 230 security vulnerabilities, including a critical zero-day flaw in the browser's V8 engine. The zero-day, identified as CVE-2026-87491, involves an out-of-bounds write error, which could allow an attacker to manipulate Chrome's memory and execute malicious code. This flaw could be triggered by a specially crafted HTML page, and Google has confirmed that attackers are already exploiting it. However, the company has not disclosed details about the attackers, their targets, or whether the vulnerability is used in combination with others. The update also marks a shift in Chrome's release schedule, now aiming to deliver major updates every two weeks. Users on Windows and macOS should update to versions 153.0.8010.36 or 153.0.8010.37, while Linux users should update to 153.0.8010.36. Chrome typically updates automatically in the background, but users should restart the browser to ensure the changes take effect. Among the 230 fixed issues, five were classified as critical, impacting features like WebGL and Cast. However, not all were newly discovered; some had been present for years. This suggests the increase in reported vulnerabilities reflects improved detection capabilities rather than a decline in Chrome's security. Google has been using AI models to enhance its bug-finding efforts, particularly in fuzzing campaigns that test browser components for weaknesses. Since 2026, Google has significantly expanded its use of AI, including the Gemini-based system, to analyze more of Chrome's code. Once vulnerabilities are identified, specialized teams work quickly to address them, generating and evaluating patches, and preparing tests for developer review. This increased automation, combined with a rise in external vulnerability reports—more than the entire 2025 year by March 2026—has led to more comprehensive security updates. Chrome 151 and 152 each addressed over 300 flaws, showing a continued trend of proactive security improvements.