Close Menu
Daily Guardian
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
What's On

LUXEED Signs Partnership with Omeir Bin Youssef Group, Officially Enters the Middle East and Kicks Off Global Expansion

July 29, 2026

Via Rail locomotive fleet to be replaced, new facility in works: MacKinnon

July 29, 2026

Remarkable’s refurbished bundle is an awesome deal that’s over $350 off

July 29, 2026

While You’re Paying Fake Affiliates, Your Competitors Are Recruiting the Publishers ChatGPT Trusts: FirstPromoter 2026 Report

July 29, 2026

VRRM UPCOMING DEADLINE: Faruqi & Faruqi, LLP Reminds Verra (VRRM) Investors of Securities Class Action Lawsuit Deadline on August 4, 2026

July 29, 2026
Facebook X (Twitter) Instagram
Finance Pro
Facebook X (Twitter) Instagram
Daily Guardian
Subscribe
  • Home
  • News
  • Politics
  • Business
  • Entertainment
  • Lifestyle
  • Health
  • Sports
  • Technology
  • Climate
  • Auto
  • Travel
  • Web Stories
Daily Guardian
Home » SquareX Launches “Year of Browser Bugs” (YOBB) to Expose Critical Security Blind Spots
Press Release

SquareX Launches “Year of Browser Bugs” (YOBB) to Expose Critical Security Blind Spots

By News RoomMarch 18, 20254 Mins Read
SquareX Launches “Year of Browser Bugs” (YOBB) to Expose Critical Security Blind Spots
Share
Facebook Twitter LinkedIn Pinterest Email

PALO ALTO, Calif., March 18, 2025 (GLOBE NEWSWIRE) — SquareX, a pioneer in Browser Detection and Response (BDR) space, announced the launch of the “Year of Browser Bugs” (YOBB) project today, a year-long initiative to draw attention to the lack of security research and rigor in what remains one of the most understudied attack vectors – the browser.

The browser has evolved from a simple web rendering engine to be the new “endpoint” — the primary gateway through which users interact with the Internet, for work, leisure, and transactions. Yet, traditional security solutions continue to focus on endpoints and networks despite the exponential growth of browser-native attacks.

The YOBB project was inspired by Month of Bugs (MOB), an iconic cybersecurity initiative where security researchers would publish one major vulnerability found in major software providers every day of the month. MOB projects played a huge role in improving the gravity at which security and responsible disclosure are taken in these companies. Notable projects included the Month of Browser Bugs (July 2006), Month of Kernel Bugs (November 2006), and Month of Apple Bugs (January 2007). SquareX is bringing back this tradition with the YOBB to raise awareness of cyberthreats that the browser is vulnerable to. However, unlike H. D. Moore’s original Month of Browser Bugs which focused on software bugs in the browser itself, SquareX will be disclosing application layer attacks that can be delivered through any website, app, or cloud data storage accessed through the browser. 

Throughout 2025, SquareX’s research team will disclose at least one critical web attack per month as part of the YOBB project, focusing on vulnerabilities that exploit architectural limitations of the browser and incumbent solutions. The research will reveal never-seen-before attack vectors that remain unknown even to the cybersecurity community. Each disclosure will include attack video demonstrations, technical breakdowns, and mitigation strategies. These disclosures will be wholly SquareX-researched and discovered, rather than an aggregation of existing security research. 

Under the YOBB initiative, SquareX has already made major releases since 2024 and into the first two months of 2025:

2025

2024

Quoting Vivek Ramachandran, the Founder and CEO of SquareX, “As browsers become the new endpoint, attackers are increasingly targeting employees to break into organizations and exfiltrate data, just like the Cyberhaven incident. Unfortunately, beyond mainstream media attention, there is little done by vendors from a security perspective to prevent similar exploits from happening in the future. The YOBB is our attempt to draw attention to an attack surface that is exponentially growing. We hope that this will serve as a call to action for browser and security vendors to solve these vulnerabilities that give rise to application layer attacks that simply cannot be solved through browser patches.”

As the year progresses, security teams can expect monthly disclosures to be documented at https://sqrx.com/research.

About SquareX

SquareX’s industry-first Browser Detection and Response (BDR) helps organizations detect, mitigate and threat-hunt client-side web attacks targeting employees in real time. This includes defending against identity attacks, malicious extensions, spearphishing, browser data loss, and insider threats. 

SquareX takes a research and attack-focused approach to browser security. SquareX’s dedicated research team was the first to discover and disclose multiple pivotal attacks, including Last Mile Reassembly Attacks, Polymorphic Extensions, and Browser Syncjacking. As part of the Year of Browser Bugs (YOBB) project, SquareX commits to continue disclosing at least one major architectural browser vulnerability every month.  

To learn more about SquareX’s BDR, users can contact [email protected]. For press inquiries on this disclosure on the Year of Browser Bugs, users can contact [email protected].

Contact

Head of PR

Junice Liew

SquareX

[email protected]

A photo accompanying this announcement is available at https://www.globenewswire.com/NewsRoom/AttachmentNg/159dd5f0-ba34-4310-92d7-498e8cd512fc

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Keep Reading

LUXEED Signs Partnership with Omeir Bin Youssef Group, Officially Enters the Middle East and Kicks Off Global Expansion

While You’re Paying Fake Affiliates, Your Competitors Are Recruiting the Publishers ChatGPT Trusts: FirstPromoter 2026 Report

VRRM UPCOMING DEADLINE: Faruqi & Faruqi, LLP Reminds Verra (VRRM) Investors of Securities Class Action Lawsuit Deadline on August 4, 2026

PCCA Canada Sterility Assurance Training Earns Accreditation from the Canadian Council on Continuing Education in Pharmacy (CCCEP)

Air Methods, Emory Healthcare Announce Rebrand of AirLife 5 to Emory Flight

Bitget Ranks Second in ETH Liquidity Depth in H1 2026, CoinGlass Report Finds

WHITE LODGING BREAKS GROUND ON NEW AUTOGRAPH COLLECTION® HOTEL IN CHARLOTTE’S SOUTH END

Realsy launches AI-powered property evaluation platform through partnership with Restb.ai

Ocean City, Maryland’s Summer Send Off Celebrations Return with Hotel Discounts and Free Beachfront Spectacle

Editors Picks

Via Rail locomotive fleet to be replaced, new facility in works: MacKinnon

July 29, 2026

Remarkable’s refurbished bundle is an awesome deal that’s over $350 off

July 29, 2026

While You’re Paying Fake Affiliates, Your Competitors Are Recruiting the Publishers ChatGPT Trusts: FirstPromoter 2026 Report

July 29, 2026

VRRM UPCOMING DEADLINE: Faruqi & Faruqi, LLP Reminds Verra (VRRM) Investors of Securities Class Action Lawsuit Deadline on August 4, 2026

July 29, 2026

Latest News

PCCA Canada Sterility Assurance Training Earns Accreditation from the Canadian Council on Continuing Education in Pharmacy (CCCEP)

July 29, 2026

Air Methods, Emory Healthcare Announce Rebrand of AirLife 5 to Emory Flight

July 29, 2026

Bitget Ranks Second in ETH Liquidity Depth in H1 2026, CoinGlass Report Finds

July 29, 2026
Facebook X (Twitter) Pinterest TikTok Instagram
© 2026 Daily Guardian Canada. All Rights Reserved.
  • Privacy Policy
  • Terms
  • Advertise
  • Contact

Type above and press Enter to search. Press Esc to cancel.

Go to mobile version