Saturday, June 24, 2017
Search
  
Submit your own News for
inclusion in our Site.
Click here...
Breaking News
Google Promises to Stop Reading Your Emails in Gmail
BlackBerry's Software and Services Sales Fell in Q1
Handsets Expected to be Largest Market for ICs
G.SKILL Announces New DDR4 for the Intel X299 HEDT Platform
Toshiba Open to Further Talks With Western Digital About Chip Unit Sale
Foxconn Confirms US Investment Plan
Tesla Could Enter the Music-Streaming Business
Youtube Unveils New VR180 Format
Active Discussions
Which of these DVD media are the best, most durable?
How to back up a PS2 DL game
Copy a protected DVD?
roxio issues with xp pro
Help make DVDInfoPro better with dvdinfomantis!!!
menu making
Optiarc AD-7260S review
cdrw trouble
 Home > News > General Computing > Google ...
Last 7 Days News : SU MO TU WE TH FR SA All News

Friday, February 04, 2011
Google Offers $20,000 To Potential Chrome Browser Hackers


At the Pwn2Own contest next month, Google will offer $20,000 to the first security researcher who can gain full control of a laptop running its Chrome Browser.

The "hacking" contest will be taking place on the 9th, 10th, and 11th of March, 2011 in Vancouver, BC during the CanSecWest conference.

HP TippingPoint is funding $105,000 of prizes and Google has offered up $20,000 to the researcher who can best their Chrome browser. Similarly to last year the competition will focus on two main technologies: web browsers and mobile devices.

This year's web browser targets will be the latest release candidate (at the time of the contest) of Microsoft's Internet Explorer, Apple's Safari, Mozilla's Firefox and Google's Chrome browsers.

Each browser will be installed on a 64-bit system running the latest version of either OS X or Windows 7.

The laptop prizes include a Sony Vaio running Windows 7, an Alienware m11x running Windows 7, an Apple MacBook Air 13" running Mac OS X Snow Leopard and a Google CR-48 running ChromeOS.

As for Chrome, the contest will be a two-part one. On day 1, Google will offer $20,000 USD and the CR-48 if a contestant can pop the browser and escape the sandbox using vulnerabilities purely present in Google-written code. If competitors are unsuccessful, on day 2 and 3 the ZDI will offer $10,000 USD for a sandbox escape in non-Google code and Google will offer $10,000 USD for the Chrome bug. Either way, plugins other than the built-in PDF support are out of scope.

A successful hack of IE, Safari, or Firefox will net the competitor a $15,000 USD cash prize, the laptop itself, and 20,000 ZDI reward points which immediately qualifies them for Silver standing. Benefits of ZDI Silver standing include a one-time $5,000 USD cash payment, 15% monetary bonus on all ZDI submissions in 2011, 25% reward point bonus on all ZDI submissions in 2011 and paid travel and registration to attend the DEFCON Conference in Las Vegas.

This year's competition is also focusing on hacks against mobile phone targets. A base station will be available on-site so that competitors will be able to perform attacks against the cell phone basebands.

The following are the target mobile devices for the contest:

* Dell Venue Pro running Windows 7
* iPhone 4 running iOS
* Blackberry Torch 9800 running Blackberry 6 OS
* Nexus S running Android

A successful attack against these devices must require little to no user interaction and must compromise useful data from the phone. Any attack that can incur cost upon the owner of the device (such as silently calling long-distance numbers, eavesdropping on conversations, and so forth) is within scope.

A successful compromise of any of these targets will win the contestant a cash prize of $15,000 USD, the device itself, and 20,000 ZDI reward points which immediately qualifies them for Silver standing. Benefits of ZDI Silver standing include a one-time $5,000 USD cash payment, 15% monetary bonus on all ZDI submissions in 2011, 25% reward point bonus on all ZDI submissions in 2011 and paid travel and registration to attend the DEFCON Conference in Las Vegas.

Last year the contest was a great success, with three of the four browsers successfully compromised as well as the Apple iPhone.


Previous
Next
Crysis 2 Minimum Specifications Revealed        All News        HighPoint Launches Controller That Combines HDD With SSD
Canada Delays Usage-Based Billing For Internet Users     General Computing News      Apple Invests in LCD Display Companies

Get RSS feed Easy Print E-Mail this Message

Related News
Google For Jobs Gives Americans Easy Access to More Job Listings
Google Takes Steps to Remove Extremist Content on YouTube
Google to Make its Own SoCs for Tablets and Smartphones
Google Chrome to Get Ad Blocker Next Year
Google Set to Take a Lead in Market of Digital Assistants
Google To Employ Machine Learning To Ad Analytics
Samsung Chromebook Pro Available on May 28 For $550
Google Dedicates Second Day of Google I/O on Daydream, Tango, and Developer tools for VR and AR
Google I/O: Google Digital Assistant Coming to iPhone, Android O, Android Go, New TPU and VR
Google to Bring Digital Assistant To Third-party Hardware, Including the iPhone
Google Becomes More Flexible When it Comes to Banning Adsense Publishers
New Google Pixel Phone Could By Made By LG

Most Popular News
 
Home | News | All News | Reviews | Articles | Guides | Download | Expert Area | Forum | Site Info
Site best viewed at 1024x768+ - CDRINFO.COM 1998-2017 - All rights reserved -
Privacy policy - Contact Us .