Apple, Google to Reportedly Fix a Major Security Flaw in Safari and Chrome Browsers

Apple Safari and Google Chrome browsers reportedly accept queries to the 0.0.0.0 IP address which can be exploited.

Advertisement
Written by Akash Dutta, Edited by Siddharth Suvarna | Updated: 8 August 2024 17:30 IST
Highlights
  • Apple is said to be fixing the loophole with macOS Sequoia
  • Google has also made announcements about ending the vulnerability
  • The vulnerability was found by Israeli cybersecurity firm Oligo Security

Mozilla Firefox is also said to have the security flaw but the company has not announced any fix so far

Photo Credit: Pexels/Deepanker Verma

Apple, Google, and Mozilla's browsers reportedly have a major security vulnerability which has existed for years. The zero-day vulnerability is related to the IP address 0.0.0.0 that is private to the user's device. The exploit can allow bad actors to send queries through it to breach the system and steal data. As per the report, both Apple and Google are working to fix the loophole for Safari and Chrome browsers respectively. However, Mozilla has not revealed if it plans to issue a fix for its Firefox browser.

Apple and Google Might Fix the 0.0.0.0 Vulnerability

According to a report by Forbes, the 0.0.0.0 exploit could have existed in major browsers for as long as 18 years, however, it was not known by the developers. This is why it is being called a zero-day vulnerability since developers had zero days to patch the issue. The exploit is said to have been discovered by researchers at Israel-based cybersecurity firm Oligo.

Advertisement

Malicious websites can potentially send malicious requests to access files via the 0.0.0.0 IP address if a user falls for a scam and opens the link. Dubbing it the “0.0.0.0-day” attack, Oligo AI security researcher Avi Lumelsky told the publication that the vulnerability could be used by a hacker to breach the security of the device and access private data.

While such attacks can only affect individuals and enterprises that host their own web servers, the report highlights that the number of systems that can be compromised is still very high and the security flaw cannot be taken lightly.

Advertisement

As per the report, Apple has told the publication that it will be blocking all attempts from websites to send queries to the IP address in question with the public beta version of macOS Sequoia. This means the update will be shipped with Safari 18, and will likely be made available for macOS Sonoma and macOS Ventura.

While Google has not made a formal announcement to fix the vulnerability, it has made several posts on Chrome Status highlighting the issue and proposals of fixing it. On the other hand, Mozilla is yet to make any announcements on fixing the issue on the Firefox browser.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Flipkart Big Billion Days Sale: iPhone 17, Google Pixel 11 to Get Discounts
  2. Vivo V80 May Launch in India Early Next Month At This Price
  3. Amazon Great Indian Festival 2026: These Smartphones Get Early Deals
  4. Global Xiaomi 18 Pro and 18 Pro Max Said to Get Smaller Batteries
  5. OpenAI Could Launch a New Cybersecurity-Focused AI Model
  6. Here's How Much the Oppo K14 Plus 5G Will Cost in India
  1. Magic Eden Investigates Possible Exploit After NFTs Move for 0 ETH
  2. Amazon Great Indian Festival 2026: Early Deals Are Now Live on OnePlus N6x, iQOO Z10 Lite 5G, and More
  3. Marking 12 Years of Make in India, Gov't Targets the Brains Inside Our Smartphones
  4. Google Photos Update Brings Redact Tool, Moods and AI Wardrobe
  5. Halo Studios Reportedly Has Around 30 Employees Left After Layoffs as Activision Takes Charge of Franchise
  6. KelpDAO Sues LayerZero Over $292 Million rsETH Exploit, Claims Bridge Risks Were Not Disclosed
  7. OpenAI Plans to Launch a New Cybersecurity-Focused GPT-6 Series AI Model: Report
  8. Vivo V80 Price in India Leaked Ahead of October 6 Launch: What You Need to Know
  9. Infinix GT NX Controller With Pixel-Level FPS Touchpad, GT NX Station Cooling Dock Unveiled
  10. Bitget Suffers $351.6 Million Security Breach, Exchange Says No Private Keys Were Leaked
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.