Ryan Naraine of ZDNet broke this story yesterday afternoon a few hours after Google release their new web browser, Chrome, for public beta download.
Googles shiny new Web browser is vulnerable to a carpet-bombing vulnerability that could expose Windows users to malicious hacker attacks.Just hours after the release of Google Chrome, researcher Aviv Raff discovered that he could combine two vulnerabilities a flaw in Apple Safari (WebKit) and a Java bug discussed at this years Black Hat conference to trick users into launching executables direct from the new browser.
The Google Chrome user-agent shows that Chrome is actually WebKit 525.13 (Safari 3.1), which is an outdated/vulnerable version of that browser.
Discussion
No comments yet.