Samker's Computer Forum - SCforum.info

World TOP Headlines: => Latest Security News & Alerts => Topic started by: Samker on 23. March 2009., 08:13:33

Title: Chrome beats the hackers in annual browser bash
Post by: Samker on 23. March 2009., 08:13:33
(http://blog.taragana.com/wp-content/uploads/2009/01/chrome211-261x300.jpg)

IE8, Safari and Firefox all fell victim to hackers on day one of the annual Pwn2Own contest, while Google's Chrome survived.

The Pwn2Own competition, which is held every year to challenge hackers and security experts to find vulnerabilities in web browsers and mobile devices, has taken its usual share of victims with one surprise survivor during its first day.

Targeted browsers included Microsoft's Internet Explorer 8, Mozilla's Firefox, and Google's Chrome, running on a Sony Vaio notebook running Windows 7 as well as Safari and Firefox on a Macbook running OS X.

After the first day of the Pwn2Own contest, Google's Chrome browser was the only browser left standing. Firefox, Safari, and Internet Explorer, however, all fell to hackers with Safari exploited in mere seconds.

So what makes Chrome so secure? Previous Pwn2Own champion Charlie Miller says that although he did find a security hole in Google's browser, he was unable to exploit it because of Chrome's browser's sandboxing feature (which is a security mechanism that keeps running code isolated using a tightly-controlled set of virtual resources) and Windows 7 security measures which combined to prevented him from exploiting any Chrome weaknesses.

Competition organisers purchase all winning vulnerabilities that are successfully used against browsers, handing them over to affected vendors, and coordinating full public disclosure to ensure all vulnerabilities are secured.

(NZHerald)
Title: Re: Chrome beats the hackers in annual browser bash
Post by: mashed on 23. March 2009., 20:42:02
i might check chrome out, not tried that one yet.
Title: Re: Chrome beats the hackers in annual browser bash
Post by: tempe on 24. March 2009., 05:56:48
internal sandbox feature eh....
i know the benefit of this method and it's really important. you can download a software that can run your app, games, files, in virtual environment so your app is isolated from changing any files in your system. it's called sanboxie (http://www.sandboxie.com/) i use sanboxie and run my fav mozilla sanboxed.... works very well. btw if you want safer environment try to disable javasricpt. i use "no script" add-on on my firefox.

chorme is a tad uggly though...

btw ever wonder if you want to run a "keygen" you've got on i-net but really affraid if it's a virus and will abuse your system...??

use it sandboxed.... lol

see
Title: Re: Chrome beats the hackers in annual browser bash
Post by: F3RL on 26. March 2009., 09:18:45
I still use IE6 with Service Pack 3. I know it has got vulnerabilities but I feel IE6 is faster.
Now I have to consider changing my browser as the world get harsh...
P.S. Downloading Chrome now.. hehe