Dynadot — .com Registration $8.99

Google Chrome Suscepetable to new exploit

Spaceship Spaceship
Watch

Peter

VIP Member
Impact
209
An exploit in chrome has been found. Asof yet it is only proof of concept and noone has actually started using the exploit (however code is available so is easy to do, it is really simple anyway).

The exploit is called milw0rm and allows the browser to download a file with no user interaction.

Unfortunately the only sites I can find with information are hacking sites so I am not going to post any links at this time.

With further investigation there is also a 2nd bug that can be used to crash the browser (of course including all the tags). This bug can be triggered by simply clicking on a malicious link.

If the link has been set right the browser will crash. This was reported to Google yesterday.

To reporduce this bug simply enter the following into the chrome address bar about:%

http://code.google.com/p/chromium/issues/detail?id=122
 
Last edited:
0
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
GoDaddyGoDaddy
It's not called milw0rm...that's the site that is displaying the proof of concept. Milw0rm is a very popular hackers site. But yeah...looks like exploits have begun to be found. That will continue.
 
0
•••
It just seems to be referred too as milw0rm as they are the ones that broke the news.
 
0
•••
:'( and if it downloads the files without user's interaction it will download god knows what. Making it a High Risk vulnerability.
 
0
•••

We're social

Unstoppable Domains
Domain Recover
DomainEasy — Payment Flexibility
  • The sidebar remains visible by scrolling at a speed relative to the page’s height.
Back