amp-web-push-widget button.amp-subscribe { display: inline-flex; align-items: center; border-radius: 5px; border: 0; box-sizing: border-box; margin: 0; padding: 10px 15px; cursor: pointer; outline: none; font-size: 15px; font-weight: 500; background: #4A90E2; margin-top: 7px; color: white; box-shadow: 0 1px 1px 0 rgba(0, 0, 0, 0.5); -webkit-tap-highlight-color: rgba(0, 0, 0, 0); } .wp-block-jetpack-rating-star span:not([aria-hidden="true"]) { display: none; } .amp-logo amp-img{width:387px} .amp-menu input{display:none;}.amp-menu li.menu-item-has-children ul{display:none;}.amp-menu li{position:relative;display:block;}.amp-menu > li a{display:block;} /* Inline styles */ div.acssa9ae5{align-content:center;display:flex;}iframe.acss7690f{clip:rect(1px, 1px, 1px, 1px);position:absolute;} .icon-widgets:before {content: "\e1bd";}.icon-search:before {content: "\e8b6";}.icon-shopping-cart:after {content: "\e8cc";} amp-img.amp-logo { vertical-align: top; aspect-ratio: auto 1136 / 400; width: 165px; } * { font-size: 100%; font-family: "Noto Serif", sans-serif; }
Categories: Digital LifeNews

Google discovers new security exploit which allows hackers to attack iOS, Android and Windows devices

Google Project Zero announced that they have discovered 11 zero-day exploits being actively used to hack Android, Windows, and iOS devices. Hackers have been using ‘malicious websites’ to gain access to sensitive parts of the operating systems.

Project Zero shared that the team discovered seven zero-day exploits in February and October 2020—where “a couple dozen websites” were redirecting vulnerable users to one of two exploit servers. One of the servers was focused on attacking iOS and Windows users, and the other was focused on Android devices.

Source: Google Project Zero

Exploit server #1 initially just responded to iOS and Windows servers with the Safari and Chrome browsers. However, it briefly responded to Android servers after exploit server #2 went down. Exploit server #2 only responded to Android servers with the Chrome browser.

The report mentioned that hackers had “advanced knowledge” of what they were doing as they were able to bypass the security systems of “well-fortified OSes and apps that were fully patched”. They were also able to quickly reopen the breach after Google updated the Chrome engine with a fix.

“We are so thankful to all of the vendors and defensive response teams who worked their own long days to analyse our reports and get patches released and applied,” wrote Project Zero.

You can find more details on the 2020 breach on Google Project Zero’s blog. They’ve also listed the technical details of each of the vulnerabilities and exploits.

Project Zero also published details in December 2020 about a zero-click iOS vulnerability that allowed attackers remote access to victims’ iPhones. It gave hackers total control over their devices, including email, messages, and photos access.

Here’s a reminder that you shouldn’t visit websites that you don’t fully trust. You should also keep the software on your devices up to date to avoid security issues.

[ SOURCE, IMAGE SOURCE ]

Related reading

Recent Posts

CMF Clip Pro: Nothing’s budget open-wearable earbuds with Smart Dial and Hi-Res audio

Following earlier teasers, CMF by Nothing has officially launched the CMF Clip Pro, marking the…

32 minutes ago

BMW iX3 50 xDrive now in Malaysia: The first Neue Klasse EV, priced at under RM400k

BMW iX3 50 xDrive is now officially in Malaysia, marking the beginning of the Neue…

1 hour ago

MBSB Bank Visa Debit Card-i now supports Samsung Wallet and Google Pay

MBSB Bank customers can now add their Visa Debit Card-i to Samsung Wallet and Google Pay, allowing them…

14 hours ago

Alliance Bank announces Apple Pay support: Only for Visa credit cards, offers RM30 launch cashback

Almost 4 years after the feature arrived in Malaysia, Apple Pay is now finally available…

17 hours ago

JomCharge turns on 180kW DC Charger at McDonald’s Meru Raya Ipoh, 50% off for one month

If you need to charge your EV while travelling between Kuala Lumpur and Penang, there's…

19 hours ago

KLIA Terminal 1 adds live e-hailing tracking: Along with RM3 driver entry fee

Travellers who are using KL International Airport (KLIA) Terminal 1 can now expect new additions…

23 hours ago

This website uses cookies.