Pwn2Own 2017: Experts Hack Edge, Safari, Ubuntu

Discussion in 'other security issues & news' started by ronjor, Mar 16, 2017.

  1. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,044
    Location:
    Texas
    By Eduard Kovacs on March 16, 2017

     
  2. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,592
    Location:
    U.S.A.
    So much for AppContainer protection on Win 10:argh:
     
  3. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,044
    Location:
    Texas
    Windows, macOS Hacked at Pwn2Own 2017
     
  4. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,592
    Location:
    U.S.A.
    Edge hacked again plus Firefox and Win OS kernel exploited.
     
  5. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,881
    Location:
    Slovenia, EU
    Chrome not hacked yet? Great :thumb:
     
  6. ronjor

    ronjor Global Moderator

    Joined:
    Jul 21, 2003
    Posts:
    163,044
    Location:
    Texas
    VM Escape Earns Hackers $105K at Pwn2Own
     
  7. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,592
    Location:
    U.S.A.
    Looks like Chrome proved its security worthiness:
    Edge and to a lesser degree Firefox to the "dung heap."
     
  8. oliverjia

    oliverjia Registered Member

    Joined:
    Jul 21, 2005
    Posts:
    1,926
    Sounds like a very large portion of the successful exploits were achieved by some Chinese teams.

    It appears to me Linux+Chrome will provide the best security for now.
     
  9. JRViejo

    JRViejo Super Moderator

    Joined:
    Jul 9, 2008
    Posts:
    97,413
    Location:
    U.S.A.
  10. itman

    itman Registered Member

    Joined:
    Jun 22, 2010
    Posts:
    8,592
    Location:
    U.S.A.
    There is also the concept of security by obscurity.

    If I want to maximize my exploit payback, I will target the browsers in most wide use; namely and overwhelmingly Chrome and secondly, FireFox: https://www.w3counter.com/globalstats.php
     
  11. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,546
    Location:
    The Netherlands
    Yes, but the Edge sandbox hack proves that it's never a bad idea to use AE or if possible, a sandbox on top.
     
  12. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,793
    Location:
    .
    http://news.softpedia.com/news/micr...-google-chrome-almost-unhackable-514151.shtml
     
  13. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,881
    Location:
    Slovenia, EU
    https://threatpost.com/apple-patches-pwn2own-vulnerabilities-in-safari-macos-ios
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.