Google announced it will shift Chrome from a four-week to a two-week release cycle for Stable (and corresponding Beta) builds across desktop, Android, and iOS, starting with Chrome 153 scheduled for September 8. Google said the more frequent releases will be smaller in scope, aiming to reduce user disruption and simplify post-release debugging while maintaining stability due to internal process improvements.
For enterprises, Google is not changing the Extended Stable option, which will continue on an eight-week cadence for organizations that prioritize longer validation windows. Google’s enterprise guidance positions the new fortnightly Stable cadence as the “most secure option” when security outweighs maintenance overhead, while noting that Chrome’s existing model of weekly security updates (introduced to reduce the “patch gap”) remains in place alongside the milestone releases.

See real exploitation activity before you spend the cycle.
4 events from the most recent confirmed update back to the earliest known activity.
Google said the new cadence will begin with Chrome 153 on September 8, 2026, producing new beta and stable releases every two weeks. The Extended Stable channel for enterprises will remain on an eight-week cadence, and Chromebook users will keep extended release options.
Google said Chrome will shift from a four-week to a two-week release cycle for beta and stable channels on Desktop, Android, and iOS, while Dev and Canary schedules remain unchanged. The company said smaller, more frequent releases should reduce disruption, simplify debugging, and deliver fixes and features faster.
In August 2023, Google said Chrome would continue receiving weekly security updates to reduce the patch gap and limit the window for vulnerability exploitation.
Google previously reduced Chrome's major release cadence in 2021 from six weeks to four weeks, partly to speed delivery of security fixes.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See real exploitation activity behind this advisory so you can triage it against everything else in the queue.
4 references tracked. Mallory keeps watching after this page renders.
scworld.com
Open sourcego.theregister.com
Open sourcehelpnetsecurity.com
Open sourcebleepingcomputer.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.