Slashdot Mirror


Google Experiment Tests Top 5 Browsers, Finds Safari Riddled With Security Bugs (bleepingcomputer.com)

An anonymous reader writes from a report via Bleeping Computer: The Project Zero team at Google has created a new tool for testing browser DOM engines and has unleashed it on today's top five browsers, finding most bugs in Apple's Safari. Results showed that Safari had by far the worst DOM engine, with 17 new bugs discovered after Fratric's test. Second was Edge with 6, then IE and Firefox with 4, and last was Chrome with only 2 new issues. The tests were carried out with a new fuzzing tool created by Google engineers named Domato, also open-sourced on GitHub. This is the third fuzzing tool Google creates and releases into open-source after OSS-Fuzz and syzkaller. Researchers focused on testing DOM engines for vulnerabilities because they expect them to be the next target for browser exploitation after Flash reaches end-of-life in 2020.

4 of 105 comments (clear)

  1. What an impartial study! by Anonymous Coward · · Score: 3, Funny

    Google finds their own browser is best. News at 11.

    1. Re:What an impartial study! by Anonymous Coward · · Score: 3, Funny

      Apple's reply was that while Safari was not the first, it was the best-looking one.

  2. Re:I take it we're all supposed to know... by fibonacci8 · · Score: 5, Funny

    It's a system where a SUB is required to create a "safe word" 6 to 14 characters long containing at least one capital letter, at least on numeric digit, and at least one punctuation mark.

    --
    Inheritance is the sincerest form of nepotism.
  3. Re:I take it we're all supposed to know... by Anonymous Coward · · Score: 0, Funny

    CORRECT HORSE BATTERY STAPLE?