TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

From object transition to RCE in the Chrome renderer

177 点作者 mikece9 个月前

6 条评论

olliej9 个月前
I really like these super detailed exploit breakdowns, and how they touch on circumventing the mitigations (largely because I wish people would understand that mitigations are just that - they make it harder to exploit a bug, not impossible).<p>Obviously ASLR specifically is pretty weak these days, but the idea is the same (and also it’s still important - this is very much along the lines of “I have seatbelts why do I need airbags”
gnyman9 个月前
When did Chrome go from the most secure browser to there is a exploit-chain giving RCE by visiting a malicious website every second month? (Last one I recall was CVE-2024-4761 and -4671)..<p>Or maybe it was never really secure and it was just good marketing?
评论 #41240395 未加载
评论 #41239339 未加载
评论 #41239777 未加载
评论 #41240233 未加载
评论 #41239399 未加载
评论 #41241918 未加载
评论 #41239286 未加载
评论 #41240171 未加载
rvz9 个月前
Haven&#x27;t seen such a detailed writeup like this one in a while. What a find.<p>Goes to show the level of sophistication and technical skill of this RCE rabbit whole.<p>Well done.
infogulch9 个月前
Google is taking hostile actions against adblockers (and has attempted to do so for years now). Chrome using too much memory is a meme among normies at this point. It&#x27;s hard to say whether Chrome is less secure than competitors or if its exploits just get more publicity; clearly it was better than the competition at its inception, and clearly it could be better today.<p>At what point is replacement the right answer?<p>There are some promising browser engines in development right now: Servo &#x2F; Verso, and Ladybird. Some discussions from the past few days:<p>Verso – Web browser built on top of the Servo web engine | 806 points | 319 comments | <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41215727">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41215727</a><p>Ladybird browser to start using Swift language this fall | 200 points | 196 comments | <a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41208836">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=41208836</a>
评论 #41249344 未加载
nusl9 个月前
Insane. I love that these bugs are being found and fixed.
roundup9 个月前
- 21 security fixes were addressed in 126.0.6478.56&#x2F;57( Windows, Mac)<p>- $168615 awarded to security researchers and unknown $X in TBD bounties<p>I sure hope they&#x27;re refactoring parts of the codebase to leverage memory-safe languages.
评论 #41245532 未加载
评论 #41241082 未加载