[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y ] [Search | Free Show | Home]

STOP USING GOOGLE CHOME IMMEDIATELY

This is a blue board which means that it's for everybody (Safe For Work content only). If you see any adult content, please report it.

Thread replies: 43
Thread images: 12

Another new huge flaw has been discovered in Google Chrome which could allow malicious actors to steal credentials on Windows PCs.

http://www.zdnet.com/article/windows-10-credential-theft-google-is-working-on-fix-for-chrome-flaw/

Discovered by DefenseCode security researcher Bosko Stankovic (via ZDNet), the flaw works through a clever trick in the way Chrome and Windows both treat Windows Explorer Shell Command File (SCF) files, which are used as a Show Desktop icon shortcut. The end result is that the SCF file can be used to obtain a users LAN Manager (NTLMv2) password hash.
>>
>>60511491
>Chrome users can protect themselves by disabling automatic downloads. This can be done in Settings, and selecting Show advanced settings, followed by checking the option to 'Ask where to save each file before downloading'.
Yawwwwwwwwwn
>>
>>60511491
>load up bugzilla
>over 100 pages of critical security issues
niiiice
>>
>Windows
>>
Not this thread again...
>>
>>60511491
>Another
>it's the same as posted yesterday
ḧmmm
>>
File: 1494642017201.png (220KB, 347x451px) Image search: [Google]
1494642017201.png
220KB, 347x451px
>Ungoogled Chromium
>Windows 7
>Encrypted
I think im safe senpai-desu
>>
Explanation in full http://defensecode.com/news_article.php?id=21

Naturally, when a browser fails to warn on or sanitize downloads of potentially dangerous file types, one relies on security solutions to do that work instead. We tested several leading antivirus solutions by different vendors to determine if any solution will flag the downloaded file as dangerous.

All tested solutions failed to flag it as anything suspicious, which we hope will change soon. SCF file analysis would be easy to implement as it only requires inspection of IconFile parameter considering there are no legitimate uses of SCF with remote icon locations.


Currently, the attacker just needs to entice the victim (using fully updated Google Chrome and Windows) to visit his web site to be able to proceed and reuse victim's authentication credentials. Even if the victim is not a privileged user (for example, an administrator), such vulnerability could pose a significant threat to large organisations as it enables the attacker to impersonate members of the organisation. Such an attacker could immediately reuse gained privileges to further escalate access and perform attacks on other users or gain access and control of IT resources.

We hope that the Google Chrome browser will be updated to address this flaw in the near future.
>>
>>60511770

You're not safe
>>
>>60511796
He is since Chromium doesn't have auto-updates,
you are not capable of reading the article,
and you don't know Chromium's nuances.
>>
>>60511805

You don't need updates for this to work, it just requires visiting a site. If you're on Chromium you're even further behind in security.
>>
>>60511815
As i've said, you are incapable of reading English and the article.
The first anon in this thread is though.
>>
>>60511491
>Windows 10
HA
>>
The Apple MacBook Pro with Retina Display doesn't have this problem.
>>
File: 1490983917800.jpg (172KB, 1280x967px) Image search: [Google]
1490983917800.jpg
172KB, 1280x967px
>>60511491
wtf is wrong with her feet? o_O god fucking damn it, nigger genetics are complete shit
>>
File: meanwhile in cape town.webm (675KB, 480x600px) Image search: [Google]
meanwhile in cape town.webm
675KB, 480x600px
>>60512241

>proceeds to post a hair dyed gypsie whore
>>
File: 029.jpg (3MB, 4000x2580px) Image search: [Google]
029.jpg
3MB, 4000x2580px
>>60512254
stop posting orangutans on my board
>>
>>60512352
what kind of mystery meat is that?
>>
File: 021.jpg (3MB, 4000x2580px) Image search: [Google]
021.jpg
3MB, 4000x2580px
>>60512384
tanya :3
>>
>>60511805
check the latest build of chromium and the latest autoupdated version of chrome idiot. chrome is far behind chromium.
>>
File: 1464473271834.png (308KB, 500x375px) Image search: [Google]
1464473271834.png
308KB, 500x375px
>>60511770
WHO
IS
THIS
SEMEN
DEMON
>>
>>60512403
Kek
>>
>>60512352
no one posted trump
>>
File: 1495107887751.jpg (6KB, 171x212px) Image search: [Google]
1495107887751.jpg
6KB, 171x212px
>>60512254
>>
>>60512352
>>60512393

>posting a dyed hair brown eyed Ukrainian gypsy whore who's parents sold her into sex slavery when she was a child
>>
>>60512254
SAUCE
>>
File: zoo.jpg (109KB, 1280x720px) Image search: [Google]
zoo.jpg
109KB, 1280x720px
>>60513363
>>
>>60513379
I didn't ask you, you 12yo edgelord.
>>
>>60511491
>Guy finds exploit
>Google will fix with an update
>Chrome now has 1 less exploit

Wouldn't it be better to use Chrome after this?
>>
Is there anything in this world that's not a complete piece of shit security wise?
>>
>>60513400
no, read vault7
>>
File: 1379940161673.jpg (11KB, 200x200px) Image search: [Google]
1379940161673.jpg
11KB, 200x200px
>>60513387
>being this ass blasted
>>
>>60512254
>>60512254
>>60512254
>>60512254
>>60512254
SAUCE ME UP
>>
File: vlc 2016-10-31 14-22-59-32_.webm (2MB, 296x480px) Image search: [Google]
vlc 2016-10-31 14-22-59-32_.webm
2MB, 296x480px
>>60513434
<-
>>
>>60513457
>he thinks he can troll people with something like this
are you from reddit?
>>
>"There is no need to click or open the downloaded file -- Windows File Explorer will automatically try to retrieve the 'icon'," notes Stankovic.
Well, shit
>>
File: 1485737078537.jpg (101KB, 812x1000px) Image search: [Google]
1485737078537.jpg
101KB, 812x1000px
>>60512254
nobody asked you to link sheboons there bud. here is a picture of a human being with a developed neo cortex. faggot.
>>
>>60513464
what if you use 3rd party thumbnail generators? I do.
>>
>>60513463
I help you, friend. I not troll :) You asked for brown persons, I gave you. Enjoy.
>>
>>60513476
ok it's reddit then
>>
>>60511491
How can you post with no picture? Are you hacker?
>>
>>60511491
>on Windows PCs

lel
>>
File: 1446399307091.png (59KB, 576x507px) Image search: [Google]
1446399307091.png
59KB, 576x507px
>>60511491
>file deleted
Thread posts: 43
Thread images: 12


[Boards: 3 / a / aco / adv / an / asp / b / bant / biz / c / can / cgl / ck / cm / co / cock / d / diy / e / fa / fap / fit / fitlit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mlpol / mo / mtv / mu / n / news / o / out / outsoc / p / po / pol / qa / qst / r / r9k / s / s4s / sci / soc / sp / spa / t / tg / toy / trash / trv / tv / u / v / vg / vint / vip / vp / vr / w / wg / wsg / wsr / x / y] [Search | Top | Home]

I'm aware that Imgur.com will stop allowing adult images since 15th of May. I'm taking actions to backup as much data as possible.
Read more on this topic here - https://archived.moe/talk/thread/1694/


If you need a post removed click on it's [Report] button and follow the instruction.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com.
If you like this website please support us by donating with Bitcoins at 16mKtbZiwW52BLkibtCr8jUg2KVUMTxVQ5
All trademarks and copyrights on this page are owned by their respective parties.
Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
This is a 4chan archive - all of the content originated from that site.
This means that RandomArchive shows their content, archived.
If you need information for a Poster - contact them.