Serious security vulnerabilities in Safari and Chrome have existed for 18 years
The vulnerability, related to the IP address 0.0.0.0, may have existed for 18 years but has not been discovered by developers until now.
Security researcher Avi Lumelsky of Oligo, Israel discovered this vulnerability and labeled it a "zero-day vulnerability" or "0.0.0.0-day attack" due to lack of prior awareness. This vulnerability is believed to be being exploited by cybercriminals to compromise devices and satellite data, so it needs to be patched immediately.
The "0.0.0.0-day attack" involves malicious websites capable of sending malicious requests through IP address 0.0.0.0. An attacker could gain unauthorized access to sensitive information on a user's device if they accidentally click on a malicious link.
According to experts, the potential scale of compromised systems is huge so users the potential scale of compromised systems is huge. This vulnerability primarily affects individuals and organizations hosting their own web servers.
After the information was discovered, Apple announced plans to block any attempts to exploit the IP address in question from websites. A fix will be released in the upcoming public beta of macOS Sequoia, alongside Safari 18. A fix for macOS Sonoma and macOS Ventura will also be rolled out in the future.
Meanwhile, Google has not yet released an official statement, but it seems that the company is aware of this vulnerability and is considering many different solutions.
You should read it
- Fix the error that Safari automatically exits on iPhone / iPad
- Custom ways on Safari increase the browser experience
- 8 Safari Web browsing tips on iPhone, iPad
- How to fix Safari error can not load websites on Mac
- Summary of the new features of Safari on iOS 14
- How to translate web pages on Safari on Mac
- 7 tips to fix file downloads on Safari
- How to Update Safari on Mac
May be interested
- Chrome, Edge, Safari and Office 365 are easily breached in a security competition in Chinatianfu cup - the highest hack contest of the country billion people.
- IBM developed a new technology to patch security holestop security researchers at ibm have recently developed a new technique to etch almost entirely the impact of security vulnerabilities before they are actually found.
- Google warns of 5 serious security holes in Chrome, recommends users to update the patch immediatelygoogle has warned about five serious security vulnerabilities found in the chrome browser in a recent post on the company blog.
- Apple has released an update to patch a series of vulnerabilities in iOS, macOS, Safari and many other platforms, update now!apple released patches for a range of simple to serious vulnerabilities that have been confirmed on ios and macos platforms, safari, watchos, tvos and itunes.
- Disable search suggestions on Chrome and Safari browsersevery time you type a search term into the address bar of chrome or safari, the browser will display suggestions for related search terms. with many users, this is a useful feature when they can expand their search. however, for many other users, it is uncomfortable about this because the information they seek is not central.
- How to fix 5 Safari bugs on iPhonesafari is the most popular and used browser on the iphone. however, when you encounter a problem, safari is also frustrating for users especially when you can't access the network and try to fix it. here are 5 common reasons why safari doesn't work and how to fix it.
- 70% of Microsoft security vulnerabilities stem from memory errorsat the bluehat security conference in israel discussing security over the weekend, a microsoft engineer revealed that over the past 12 years the number of patches microsoft has released to fix security-related errors memory accounts for about 70%.
- Chrome 19 syncs tabs on all devicesthe tabs you open on chrome 19 in your computer will automatically 'run' on chrome 19 on other devices like phones and tablets. chrome 19 also patched 20 vulnerabilities.
- There is a serious security vulnerability that has existed for 18 years in AMD processors, but it is not too worryingsecurity researchers at ioactive have discovered a serious vulnerability that exists in nearly two dozen amd-branded cpu models.
- Find security holes on every site with Niktothere are several tools and applications to find security vulnerabilities in web pages, but one of the simplest tools is nikto. this article will show you how to use nikto to check security holes on every site!