Skip to main content
  1. Home
  2. Computing
  3. Legacy Archives

Your favorite browser probably didn’t hold up at this week’s Pwn2Own hackathon

Add as a preferred source on Google

Whether you’re talking about Chrome, Firefox, Internet Explorer, or Safari, none of your favorite browsers escaped unscathed when some of the world’s best digital security consultants congregated at Pwn2Own, a hacking competition held during this week’s security-focused CanSecWest conference in Vancouver. The participants in the tournament found and demonstrated exploits in each browser during the event, while racking up cash prizes doled out for successful efforts.

According to PCWorld, this year’s big winner was French outfit Vupen, which zeroed in on vulnerabilities in several programs including a exploit that would allow an attacker to bypass Chrome’s security measures.  Vupen also hacked their way into Internet Explorer 11, Firefox, Adobe Flash and Adobe Reader, with Chaouki Bekrar, the group’s founder, earning close to $400,000.

Recommended Videos

Meanwhile, infamous hacker George Hotz, AKA Geohot, demoed his ability to pull off a remote code execution exploit in Firefox. Various teams also showed off remote code execution exploits, which would permit an attacker to take control of their victim’s computer using browsers like Safari and IE, as well as commonly used software like Adobe Flash Player and Adobe Reader. All told, software-makers awarded $850,000 in prize money to competitors over the two-day competition.

Not everybody does it just for the cash, though. A charity-focused hacking tournament dubbed Pwn4Fun pitted Google security consultants against members of Hewlett-Packard’s DVLabs Zero Day Initiative, or ZDI. Between the IE vulnerabilities found by ZDI and the Safari exploits the Google team used, the pair managed to raise $82,500 for the Canadian Red Cross.

Mike Epstein
Former Associate Editor, Gaming
Michael is a New York-based tech and culture reporter, and a graduate of Northwestwern University’s Medill School of…
Opera One levels up video watching with a 500% volume booster, improved PiP, and sidebar streaming support
Your Opera browser just got a serious upgrade, and your ears will thank you for it.
Opera browser hero image

Opera One just dropped an update that makes it a much better browser for video lovers and remote workers alike. The update brings YouTube and Twitch into the sidebar, a native volume booster that cranks audio up to 500%, and a fully revamped Picture-in-Picture mode.

YouTube and Twitch are now in the sidebar

Read more
The Logitech MX Vertical drops to $74, and if you spend more than a few hours a day at a mouse this deal is worth your attention
Logitech MX Vertical drops to $74.99 (38% off): ergonomic vertical design, 4000 DPI, multi-device.
Logitech MX Vertical deal

If you spend most of your working day at a mouse, the Logitech MX Vertical is one of the more practical desk upgrades you can make, and at $74.99 it's down $45 off its $119.99 list price in a limited-time deal. The vertical design isn't a gimmick: Logitech's own testing shows a 10% reduction in muscular activity compared to a standard mouse, and the 57° wrist angle addresses the pressure points that build up over a long day in a way that a standard horizontal mouse simply doesn't.

get the deal

Read more
Framework Laptop 16 gets a better touchpad, a new look, and a wild eGPU trick
The most customizable laptop just got even better, and that's saying something.
Framework laptop 16

Framework isn't just focused on its new Laptop 13 Pro. The company is also rolling out a solid set of updates to the Framework Laptop 16, which was one of the best laptops you can buy. The best part of the update is that Framework is addressing all the issues that past Framework 16 owners have been asking for since the laptop launched two years ago.

The biggest quality-of-life upgrade is the new one-piece haptic touchpad. One of the trade-offs of the Laptop 16's modular input system has been the visible seams around the touchpad area. 

Read more