Tech
Major vulnerability uncovered in Safari and Google Chrome after 18 years: Report
California-based tech giants Apple and Google are reportedly working to resolve a critical security vulnerability that has been present in their web browsers for years. This vulnerability, related to the IP address 0.0.0.0, is reportedly being exploited by cybercriminals to breach devices and sateal data.
According to a report from Forbes, this security flaw could have existed for as long as 18 years, yet it remained undetected by developers until recently. The issue was uncovered by researchers from the Israeli cybersecurity firm Oligo, leading it to be labeled as a “zero-day vulnerability” due to the lack of prior awareness and immediate patching.
The exploit, dubbed the “0.0.0.0-day attack” by Oligo AI security researcher Avi Lumelsky, involves malicious websites potentially sending harmful requests through the 0.0.0.0 IP address. If a user inadvertently clicks on a malicious link, it could enable attackers to gain unauthorized access to sensitive information on their device.
Although this flaw primarily impacts individuals and organizations that host their own web servers, the potential scale of compromised systems is significant, and experts emphasize that this security issue should not be underestimated.
The report highlights that Apple has responded by announcing plans to block any attempts from websites to exploit the IP address in question. This fix will be included in the upcoming public beta of macOS Sequoia, along with Safari 18, and is expected to be rolled out to macOS Sonoma and macOS Ventura.
Meanwhile, Google has yet to make an official statement, but several posts on Chrome Status indicate that the company is aware of the problem and is considering various solutions. In contrast, Mozilla has not provided any updates on whether it will address the vulnerability in its Firefox browser.
As the tech community waits for more information from these companies, the discovery of this vulnerability highlights the ongoing challenges in maintaining the security of widely-used digital platforms.
3.6 Crore Indians visited in a single day choosing us as India’s undisputed platform for General Election Results. Explore the latest updates here!
Catch all theBusiness News, Technology News,Breaking NewsEvents andLatest News Updates on Live Mint. Download TheMint News App to get Daily Market Updates
Published: 08 Aug 2024, 08:06 PM IST