4 ms·
This looks bad for Google. EdgeSpot detected an in-the-wild exploit and told Google about this in December, but Google wasn't going to fix the bug until late Ap
by MikeHolman 8y ago
This looks bad for Google. EdgeSpot detected an in-the-wild exploit and told Google about this in December, but Google wasn't going to fix the bug until late April.
Google only released a patch early because the finder blogged about it.
https://blog.edgespot.io/2019/02/edgespot-detects-pdf-zero-day-samples.html https://blog.edgespot.io/2019/02/edgespot-detects-pdf-zero-d...
- deleted 8y ago[deleted]
- lima 8y agoThat's an entirely different vulnerability.
- sterlind 8y agoYeah, I was going to say... it would make zero sense for an attacker to waste a Chrome RCE 0day on tracking people who read academic books about Honduras! Although, I'm not sure why they'd do that in the first place, even. Anti-piracy? Seems a lot of effort..