Apple, Google to Reportedly Fix a Major Security Flaw in Safari and Chrome Browsers

Apple Safari and Google Chrome browsers reportedly accept queries to the 0.0.0.0 IP address which can be exploited.

Advertisement
Written by Akash Dutta, Edited by Siddharth Suvarna | Updated: 8 August 2024 17:30 IST
Highlights
  • Apple is said to be fixing the loophole with macOS Sequoia
  • Google has also made announcements about ending the vulnerability
  • The vulnerability was found by Israeli cybersecurity firm Oligo Security

Mozilla Firefox is also said to have the security flaw but the company has not announced any fix so far

Photo Credit: Pexels/Deepanker Verma

Apple, Google, and Mozilla's browsers reportedly have a major security vulnerability which has existed for years. The zero-day vulnerability is related to the IP address 0.0.0.0 that is private to the user's device. The exploit can allow bad actors to send queries through it to breach the system and steal data. As per the report, both Apple and Google are working to fix the loophole for Safari and Chrome browsers respectively. However, Mozilla has not revealed if it plans to issue a fix for its Firefox browser.

Apple and Google Might Fix the 0.0.0.0 Vulnerability

According to a report by Forbes, the 0.0.0.0 exploit could have existed in major browsers for as long as 18 years, however, it was not known by the developers. This is why it is being called a zero-day vulnerability since developers had zero days to patch the issue. The exploit is said to have been discovered by researchers at Israel-based cybersecurity firm Oligo.

Advertisement

Malicious websites can potentially send malicious requests to access files via the 0.0.0.0 IP address if a user falls for a scam and opens the link. Dubbing it the “0.0.0.0-day” attack, Oligo AI security researcher Avi Lumelsky told the publication that the vulnerability could be used by a hacker to breach the security of the device and access private data.

While such attacks can only affect individuals and enterprises that host their own web servers, the report highlights that the number of systems that can be compromised is still very high and the security flaw cannot be taken lightly.

Advertisement

As per the report, Apple has told the publication that it will be blocking all attempts from websites to send queries to the IP address in question with the public beta version of macOS Sequoia. This means the update will be shipped with Safari 18, and will likely be made available for macOS Sonoma and macOS Ventura.

While Google has not made a formal announcement to fix the vulnerability, it has made several posts on Chrome Status highlighting the issue and proposals of fixing it. On the other hand, Mozilla is yet to make any announcements on fixing the issue on the Firefox browser.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Laser Printer Market Will Come Down and Get Replaced by Ink Tank, Says Epson's Sivakumar
  2. Realme P4x Debuts With 8,000mAh Battery and 4G Connectivity
  3. Redmi 17C Debuts With MediaTek Helio G81 Ultra Chip, 5,160mAh Battery
  4. Lords of the Fallen 2 Has Been Delayed to Q1 2027
  5. Samsung Galaxy Watch 9 Appears in Leaked Renders With a Familiar Design
  6. Vivo X500 Pro Could Arrive With LOFIC Camera Sensor, 85mm Periscope Lens
  7. Redmi Could Launch a 9,000mAh Battery Smartphone Soon
  8. Nothing Phone 4b Visits Geekbench With This Snapdragon Chip
  9. Here's When the Samsung Galaxy M47 5G Will Launch in India
  10. Samsonite's Latest Tracking Feature Is Designed to Help You Find Your Luggage
  1. Vivo X500 Pro Camera Specifications Tipped Again; Could Feature Dimensity 9600 Pro SoC, 85mm Periscope Lens
  2. Nothing Phone 4b Surfaces on Geekbench With Snapdragon 6 Gen 4 Chipset
  3. Lords of the Fallen 2 Delayed to 2027 to Allow for Further Polish, Avoid Busy Holiday Period
  4. Samsung Galaxy Watch 9 Appears Nearly Identical to Its Predecessor in Leaked Renders
  5. Redmi Note 17 Series Phone Leaks With 9,000mAh Battery, Snapdragon 6-Series Chip
  6. Meta Glasses Launched With Muse Spark AI, 12-Megapixel Camera: Price, Specifications
  7. Crypto Sector Sees Record 83 Hacks in Q2 2026, Most-Exploited Quarter to Date: Report
  8. Capcom Spotlight Broadcast Announced for June 25; Onimusha: Way of the Sword to Get New Look
  9. Asus ROG Zephyrus Duo, G14, G16, ProArt PZ14 and TUF Gaming A14 Go on Sale in India: Prices Start at Rs 1.99 Lakh
  10. Taiko Urges Users to Move Funds Following $1.7 Million Bridge Exploit
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.