TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Google’s Project Zero discloses Windows 0day that’s been under active exploit

51 pointsby Cantbekhanover 4 years ago

6 comments

juliend2over 4 years ago
The link goes to the comments section. This one doesn&#x27;t: <a href="https:&#x2F;&#x2F;arstechnica.com&#x2F;information-technology&#x2F;2020&#x2F;10&#x2F;googles-project-zero-discloses-windows-0day-thats-been-under-active-exploit&#x2F;" rel="nofollow">https:&#x2F;&#x2F;arstechnica.com&#x2F;information-technology&#x2F;2020&#x2F;10&#x2F;googl...</a>
kerngover 4 years ago
Seems like they conveniently waited to fix Chrome bug before going ballistic at Microsoft.
评论 #24948892 未加载
akadruid1over 4 years ago
The combination of Chrome sandbox escape and Windows escalation make an extremely potent and high value combination. I hope we get more information on the &quot;targeted&quot; attacks
eznztover 4 years ago
The article mentions how a bug in a library Chrome uses allowed a sandbox escape. I am left wondering if forks of Chrome (such as Edge, which I&#x27;m using to type this from) are already updated. This is what really worries me about using Edge. Not to mention unstaffed forks such as Ungoogled Chromium.
rkagererover 4 years ago
Did they include a proof of concept in the disclosure even though the Google patch has only been out for a week and the Microsoft patch is not yet available?<p>Showing more adversaries how to make exploits right now doesn&#x27;t seem like a great idea?
评论 #24962615 未加载
codysover 4 years ago
On the same subject matter: <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=24947247" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=24947247</a>