Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - Geek your mind, the rest will follow.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews



IObit Black Friday Sale

spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Macrium Reflect FREE Edition
3. Smart Defrag
4. MusicBee
5. Sergei Strelec's WinPE
6. Microsoft Visual C++ 2015-2022 Redistributable Package
7. Visual C++ Redistributable Runtimes AIO Repack
8. McAfee Removal Tool (MCPR)
9. K-Lite Mega Codec Pack
10. Visual C++ Runtime Installer (All-In-One)
More >>

top reads

Star All the New Features Landing in Windows 11 This December

Star Lossless vs Lossy: When FLAC, APE, and ALAC Beat MP3 and When They Don't

Star Google Search Tricks You'll Actually Use in 2025 and Beyond

Star Fresh PC Checklist: First 12 Things to Do On a New Windows 11 Machine

Star Running AI Models Locally: What They Are, Where to Find Them, and How to Get Started

Star Deciding Between Idle State, Sleep Mode, and Shutdown: What's Best for Your PC?

Star How to Fix VMware Workstation "The Update Server Could Not Be Resolved" Error Installing VMware Tools

Star How to Remove Google Gemini from Your Phone (and Your Life)

Star Windows Bloat Removal Guide: Debloat Safely and Keep What You Need

Star Windows 11 Repair Playbook: SFC, DISM, CHKDSK Without Breaking Stuff


MajorGeeks.Com » News » October 2012 » Pwnium 2: Full Chrome exploit earns hacker $60,000

Pwnium 2: Full Chrome exploit earns hacker $60,000


Contributed by: Email on 10/10/2012 04:05 PM [ comments Comments ]


Google's Chrome web browser has fallen at the company's Pwnium 2 security competition, which took place earlier today, 10 October, at the Hack In The Box conference in Kuala Lumpur, Malaysia. SC Magazine reported that the hacker who goes by the pseudonym "Pinkie Pie" was successfully able to "fully exploit" Chrome, escaping the sandbox using only bugs within Chrome. The hack was done on a fully patched 64-bit Windows 7 system running the latest stable branch of Chrome. For his work, Pinkie Pie will receive the top prize of $60,000 from Google.

Before the company had even confirmed the flaw on its Pwnium AppSpot page, Google announced version 22.0.1229.94 of Chrome for Windows, Mac OS X and Linux, which explicitly closes Pinkie Pie's critical security holes. The holes are described in the announcement as being composed of two separate flaws, an "SVG use-after-free" and an "IPC arbitrary write". Google's Jason Kersey congratulated Pinkie Pie on "returning to the fray with another beautiful piece of work," adding that the company was "delighted at the success of Pwnium 2, and anticipates additional hardening and future improvements to Chrome as a result of the competition."

This isn't the first time that "Pinkie Pie", also the name of a "My Little Pony - Friendship is Magic" character, has won money for exploiting Chrome. In March of this year, he was rewarded for vulnerabilities he used at Google's Pwnium contest, which took place during the Pwn2Own competition at CanSecWest, to break out of the browser's sandbox and execute code. In order to get his code to execute on the test system at the time, he had to combine a total of six vulnerabilities; the holes were later closed with the release of Chrome 18. Along with security specialist Sergey Glazunov, Pinkie Pie also won this year's Pwnie Award for the Best Client-Side Bug.

The full results of the Pwnium 2 competition will be announced during a talk by Google Software Engineer Chris Evans tomorrow, 11 October.






« Microsoft: Windows XP infected twice as frequently as Windows 7 · Pwnium 2: Full Chrome exploit earns hacker $60,000 · Microsoft Windows 8 training videos appear on the web »




Comments
comments powered by Disqus

MajorGeeks.Com » News » October 2012 » Pwnium 2: Full Chrome exploit earns hacker $60,000

© 2000-2025 MajorGeeks.com
Powered by Contentteller® Business Edition