• Pwnfest brings two zero-day system level hacks of Edge

    Home » Forums » Newsletter and Homepage topics » Pwnfest brings two zero-day system level hacks of Edge

    Tags:

    Author
    Topic
    #23053

    So much for the most secure browser ever. Darren Pauli at The Register reports that two Win10 1607 ( = Anniversary Update = Redstone 1) machines updat
    [See the full post at: Pwnfest brings two zero-day system level hacks of Edge]

    Viewing 3 reply threads
    Author
    Replies
    • #23054

      Security is an illusion of safety. Only being able to mitigate entry to known attacks and not the ones that people have not reported. Best case scenario is to just use common sense on things you download and sites you visit while blacking ads from possible injection of malvertising. Try not to fall for email scams that lead you to specially crafted sites that inject code once you’re in as well. Only true way to stop any attack is to unplug your internet.

    • #23055

      The Register didn’t call them “zero-day”, because they reported: “… with details to be provided to vendors and kept under wraps”.

      Doesn’t “zero-day” require an active exploit before responsible disclosure or public announcement of the details?

    • #23056

      Depends on how you define zero-day. A demonstrated security hole with an active exploit would qualify as a zero-day to many — even if the people who have the exploit promise they won’t release it.

      ‘Course that’s why MS pays out $140,000 each, eh?

    • #23057

      Active means malicious attacks to most.

    Viewing 3 reply threads
    Reply To: Pwnfest brings two zero-day system level hacks of Edge

    You can use BBCodes to format your content.
    Your account can't use all available BBCodes, they will be stripped before saving.

    Your information: