Live data from Hacker News

New Chrome Zero-Day

kaspersky.com

1–10 of 12 posts

Re: New Chrome Zero-Day

#7

I'm assuming this doesn't affect Chromium, or Chromium(-based) browsers on Android then? Seeing as it isn't mentioned.

The article specifically mentions that it was discovered on Windows, but that doesn't mean some variation couldn't exist for other platforms.

Re: New Chrome Zero-Day

#8

Why would cybercriminals not just report the bug and pick up the cash from Google? Is it genuinely that much more lucrative to exploit it?

You can only sell to Google once. You can sell it to different exploit houses many times.

But also historically, some places pay in the several hundred thousand compared to tech companies that pay in the tens of thousands. So even if they only sell it once, they can make more.

Re: New Chrome Zero-Day

#9

Why would cybercriminals not just report the bug and pick up the cash from Google? Is it genuinely that much more lucrative to exploit it?

>Why would cybercriminals not just report the bug and pick up the cash from Google?

Probably because they're not the ones actually finding the bugs.

Re: New Chrome Zero-Day

#10
post #7

I'm assuming this doesn't affect Chromium, or Chromium(-based) browsers on Android then? Seeing as it isn't mentioned.

The article specifically mentions that it was discovered on Windows, but that doesn't mean some variation couldn't exist for other platforms.

I meant more along the lines of: is this a Chrome specific vulnerability or is the vuln apparent in Chromium and thus are all Chromium-based browsers (on any platform) affected?
Post reply on HN