A new security vulnerability was found when combining #Chromium browsers with virtually all modern GPUs (Intel, Apple, Nvidia, AMD and ARM).
Neither #Google nor any of the mentioned vendors are planning on fixing it.
https://arstechnica.com/security/2023/09/gpus-from-all-major-suppliers-are-vulnerable-to-new-pixel-stealing-attack/
#Mastodon, by the way, isn't vulnerable to this attack, thanks to having the `X-Frame-Options` and `Content-Security-Policy` headers. Many other fedi platforms however, including #Pixelfed, #Firefish and #Writefreely don't have them, at least when I tested.