Mariusz Mlynski is having a May to remember, earning $30,000 in bounties from Google for vulnerabilities he discovered and disclosed, on top of another $15,500 earlier this month from the same program.
Tag Archives: chrome
Google Aims to Kill Passwords with Project Abacus
Google wants to kill passwords with Project Abacus, which Google said will become available on Android devices by the end of 2016.
Google Set to Kill SSLv3 and RC4 in SMTP, Gmail in June
Google announced this week that it will begin to disable SSLv3 and RC4 a month from now, on June 16.
Google Updates Safe Browsing Alerts for Network Admins
Google enhanced the way it displays Safe Browsing Alerts for Network Administrators this week, adding information about sites circulating malware and carrying out social engineering attacks.
Firefox Add-On Flaw Leaves Apple And Windows Computers Open To Attack
Researchers say reliance on an outdated Firefox extension platform opens the door for remote system attacks on Mac OS and Windows systems.
Google Fixes Four Critical Vulnerabilities in Latest Chrome Build
Google pushed out the latest version of Chrome Thursday afternoon, fixing five issues, four of them critical.
Pwn2Own Day Two: Safari, Edge Go Down And Winner Crowned
Tencent Security Team Sniper (KeenLab and PC Manager) takes top honors and is Master of Pwn for Pwn2Own 2016 earning $142,500.
Chrome Update Fixes Three ‘High’ Severity Vulnerabilities
Google updated Chrome on Tuesday, fixing three high severity bugs in the process.
Comodo's so-called 'Secure Internet Browser' Comes with Disabled Security Features
Ormandy notes that “all shortcuts are replaced with Chromodo links and all settings, cookies, etc are imported from Chrome. They also hijack DNS settings, among other shady practices.”
What If, Same Origin Policy is Disabled
To understand this, assume you are logged into Facebook and somehow visits a malicious website in another tab.
- Steal session authentication cookies.
- Perform malicious actions through script code.
- Even Replace trusted websites with attacker-created HTML design.
How to Check, If your Browser has SOP Enabled/Disabled
Beware fraudulent Steam extensions
Do you belong to the ever growing group of Steam users that loves to trade and gamble on Valves platform – and therefor have a huge inventory?
The post Beware fraudulent Steam extensions appeared first on Avira Blog.