In this slightly shorter post, we’ll be discussing a recent update to Google’s SameSite cookie changes. In previous posts it was explained that Google was making a change to its Chrome browser which enforces the SameSite cookie attribute. These posts can be found here:

Part 1: https://www.bramfitt-tech-labs.com/article/part-1-samesite-cookie-attribute-enforcement/

Part 2: https://www.bramfitt-tech-labs.com/article/part-2-samesite-attribute/

Part 3: https://www.bramfitt-tech-labs.com/article/part-3-samesite-attribute/

 

The purpose of this change was to improve the privacy and security across the web. Since Google released Chrome 80 in February 2020, they have been gradually rolling this change out, monitoring and reaching out to websites and services to ensure cookies have been correctly labelled.

 

However, since the recent developments of COVID-19, there has been an announcement that Google will be rolling back this enforcement starting April 3rd.

 

Although the web was preparing for this change (only affecting Chrome users at this time), Google wanted to ensure that there wouldn’t be any issues as a result of the SameSite cookie changes getting access to websites that provide essential services (banking, food, government and healthcare) needed for daily life.

Google is currently looking to resume the changes in Summer 2020.

 

Reference: https://blog.chromium.org/220/04/temporarily-rolling-back-samesite.html

Join us in a partnership founded in research, education and execution

Our success is built on protecting our clients’ success. We have a distinguished track record of supporting our clients in building secure by design environments. Our consultants have successfully ushered in new security practices in leading pharmaceutical, energy and retail institutions. Bramfitt has over 50 specialists around the world and we are committed to forging long-term relationships with our clients, providing them with genuine insight and practical advice, and supporting them as they navigate the everchanging security landscape.

Let us be your partner for the next phase of your security journey.

EMEA Headquarters
Tower 42, 25 Old Broad Street London, EC2N 1HN
+44 (0) 208 187 4234
AMER Headquarters
45 Rockefeller Plaza, 20th Floor New York, NY 10111
+1 (800) 468-6046
APAC Headquarters
96 Wanneroo Rd, Yokine WA 6060, Australia
Social
iasme consortium
iasme consortium
cyber essentials
cyber essentials plus
iot security assured
pentest
ukas iso 9001ukas iso 27001
Back to top
Get in touch