Safari and Google Chrome reportedly uncovered a security flaw after 18 years
By MYBRANDBOOK
Apple and Google are working to solve a critical security vulnerability that has been present in their web browsers for years. Related to the IP address 0.0.0.0, this vulnerability is reportedly being exploited by cybercriminals to breach devices and sateal data.
The report also said that this security flaw could have existed for as long as 18 years, yet it remained undetected by developers until recently. Researchers from Oligo, an Israeli cybersecurity firm, exposed the issue, leading it to be labeled as a "zero-day vulnerability" due to the lack of prior awareness and immediate patching.
Oligo AI security researcher Avi Lumelsky termed the exploit as "0.0.0.0-day attack" which involves malicious websites potentially sending harmful requests through the 0.0.0.0 IP address. If a user inadvertently clicks on a malicious link, it could enable attackers to gain unauthorized access to sensitive information on their device.
Although this flaw primarily impacts individuals and organizations that host their own web servers, the potential scale of compromised systems is significant, and experts emphasize that this security issue should not be underestimated.
The report highlights that Apple has responded by announcing plans to block any attempts from websites to exploit the IP address in question. This fix will be included in the upcoming public beta of macOS Sequoia, along with Safari 18, and is expected to be rolled out to macOS Sonoma and macOS Ventura.
Meanwhile, Google has yet to make an official statement, but several posts on Chrome Status indicate that the company is aware of the problem and is considering various solutions. In contrast, Mozilla has not provided any updates on whether it will address the vulnerability in its Firefox browser.
Legal Battle Over IT Act Intensifies Amid Musk’s India Plans
The outcome of the legal dispute between X Corp and the Indian government c...
Wipro inks 10-year deal with Phoenix Group's ReAssure UK worth
The agreement, executed through Wipro and its 100% subsidiary,...
Centre announces that DPDP Rules nearing Finalisation by April
The government seeks to refine the rules for robust data protection, ensuri...
Home Ministry cracks down on PoS agents in digital arrest scam
Digital arrest scams are a growing cybercrime where victims are coerced or ...
Icons Of India : Harsh Jain
Harsh Jain, the co-founder of Dream 11, the largest fantasy sports web...
ICONS OF INDIA : SANDIP PATEL
Sandip Patel is the Managing Director for IBM India & South Asia regio...
ICONS OF INDIA : VIJAY SHEKHAR SHARMA
Vijay Shekhar Sharma is an Indian technology entrepreneur and multimil...
STPI - Software Technology Parks of India
STPI promotes and facilitates the growth of the IT and ITES industry i...
NPCI - National Payments Corporation of India
NPCI is an umbrella organization for operating retail payments and set...
EESL - Energy Efficiency Services Limited
EESL is uniquely positioned in India’s energy sector to address ener...
Indian Tech Talent Excelling The Tech World - RAVI KUMAR S, CEO- Cognizant
Ravi Kumar S, appointed as CEO of Cognizant in January 2023, sets the ...
Indian Tech Talent Excelling The Tech World - Aneel Bhusri, CEO, Workday
Aneel Bhusri, Co-Founder and Executive Chair at Workday, has been a le...
Indian Tech Talent Excelling The Tech World - ANJALI SUD, CEO – Tubi
Anjali Sud, the former CEO of Vimeo, now leads Tubi, Fox Corporation...