Top
Best
New

Posted by negura 9 hours ago

Actively exploited sandbox RCE in all Chromium versions(nvd.nist.gov)
407 points | 228 commentspage 3
vilas900420 5 hours ago||
[flagged]
colincowardly 8 hours ago||
[dead]
mamzxcvbn779807 6 hours ago||
[dead]
roschdal 3 hours ago||
[flagged]
turpentine 2 hours ago|
What does your vibe-coded-in-C browser do to mitigate this kind of exploit?
anonymousiam 8 hours ago|
Just one more reason to never use Chrome. Their removal of MV2 to prevent UBlock Origin from working is another.
fidotron 7 hours ago||
Chrome product management is horrible. Chrome software engineering is some of the best ever done.

(And no, I don't use it except for testing).

noir_lord 7 hours ago||
I don’t disagree, two or more things can be true at once.

That said I still use Firefox for other reasons.

I simply don’t trust google, I don’t trust Mozilla either but I do trust them more than Google and you do kinda have to have a browser to function in the modern world.

lima 8 hours ago|||
Which browser has a better security track record?
bawolff 6 hours ago|||
Despite what people are saying here, chrome has a really excellent track record. Nobody is perfect. Switching just because chrome got exploited one time will likely result in you switching to something worse.

If you're paranoid, disable JIT.

dwattttt 4 hours ago||
Or disable JS altogether, and enjoy many sites working much quicker. Many others fail & need to be selectively allowed, but it's been worth it.
Cider9986 8 hours ago||||
Vanadium makes improvements on Chromium. https://grapheneos.org/features#vanadium
StilesCrisis 7 hours ago|||
Most of those are just changing flags, not really unique development. Like "disable JIT" is a Chromium flag. "Zero-init everything" is a Clang flag.
esseph 8 hours ago|||
Right, but it's value-add on a derivative, not its own standalone engine.
p-e-w 8 hours ago|||
Firefox with uBlock Origin. It’s astonishing how many exploits uBO stops before they ever reach your browser engine. It’s the antivirus of the 2020s.
Cider9986 7 hours ago|||
Brave would be a much better option if you want security and good adblocking.
armadyl 6 hours ago||||
Firefox absolutely does not have a better security track record than Chromium browsers and on top of it you’re recommending an extension as a security measure oh my god man this comment needs to be flagged dead

edit: links

https://www.reddit.com/r/GrapheneOS/comments/1unhtxu/initial...

https://grapheneos.org/usage#web-browsing

drnick1 2 hours ago|||
The idea here is that uBlock filters the domains that may serve the malware in the first place. It basically works the same as a DNS filter.
qlte 1 hour ago||
Which you can also easily do with uBlock Origin Lite in Chrome/Chromium.
yjftsjthsd-h 3 hours ago|||
I'm willing to believe that stock chrome has a better record than stock Firefox, but

> and on top of it you’re recommending an extension as a security measure

... Yes? Why can a browser extension not be a security measure/improvement?

Alifatisk 7 hours ago|||
I suggest Zen browser (fork of FF), it feels closer to chrome.
Barbing 7 hours ago|||
I hear about Zen. Random q:

It can’t trick Canva into letting you use the color picker, or otherwise enable it, can it - if someone happens to know?

(What a dumb feature to be locked to the Googlesphere.)

aleksandrm 7 hours ago||||
What does it mean "closer to chrome"?
ZiiS 7 hours ago|||
In a good way?
Barbing 7 hours ago|||
Of all the reasons to use non-Chromium browsers whenever possible(!), this isn’t really on the list.
armadyl 6 hours ago|||
This is like saying never use seatbelts because people still die in car accidents.

Chromium is still far superior on the security front than any other browser.

StilesCrisis 7 hours ago|||
Oh, right, because other browsers never have bugs.
lta 8 hours ago|||
If we needed any more.
paulpauper 6 hours ago||
chrome has more bugs, not necessarily because it's less secure, but its popularity makes it a bigger target, so more bugs are found