The specific flaw exists due to a failure to unregister a callback pointer during the destruction of a particular type of element when embedded inside a 'blink' container. The application dereferences the original resource which can can be leveraged by an attacker to execute arbitrary code under the context of the current user.
Apple Webkit Blink Event Dangling Pointer Remote Code Execution Vulnerability
Google and Mozilla are making changes to their respective web browsers to try and thwart the notoriously corrupt government of Kazakhstan’s efforts to launch a surveillance operation against its own citizens.
In 1994, Jeff Schwartz and Dan Wong fired up the San Francisco FogCam. For 25 years, it kept a constant vigil on the San Francisco State University campus, making the FogCam the longest operating webcam in history. (The first webcam, the Trojan Room coffee pot cam, went online in 1991 and shut down in 2001.) […]
Illegitimate, popular vote losing, and manifestly unfit United States President Donald Trump said on Monday that at a recent dinner with Tim Cook — what, you didn’t think they hung out and shared meals? — the Apple CEO made a “very compelling argument” that Apple may lose its competitive edge to Samsung because of Trump’s […]
There’s no shortage of stories about the benefits of cannabidiol, that benign (and non-psychoactive) cousin of THC. Some have been using it for years to deal with pain, stress, and sleeplessness. And the more people use it, the more discussion there is about how to use it. While there’s no shortage of quality edibles on […]
Are we done with capsule coffee makers yet? Sure, they’re easy. But they are not so easy on the environment, and it’s debatable whether they actually make a better cup. Luckily, there’s never been a better time to switch back to the good old reliable drip method – especially when drip coffeemakers have quietly been […]
If there’s one thing that stayed consistent through the last decade or so of tech industry turmoil, it’s the love affair between techies and Linux. There’s just a ton you can do with the OS, and its open-source format means you can customize your rig from the ground up. Apparently not content with that level […]