Google Project Zero Finds 17 Bugs in Safari, Far More Than Other Browsers

Advertisement
By Gadgets 360 Staff | Updated: 22 September 2017 18:25 IST
Highlights
  • Google's Project Zero team found 17 bugs in Safari this year
  • Google engineers use a tool called Domato to find bugs in Web browsers
  • They have just open sourced Domato to all

Google's security team Project Zero has open sourced an automated testing tool called Domato which they have been using to find dozens of security bugs in popular Web browsers.

Domato has been used to find 31 security bugs in Chrome, Firefox, Safari and other browsers. But while there were only a handful bugs spotted in most of the browsers, Safari was an outlier with over 17 bugs, Google Project Zero's Ivan Fratric said.

Ahead of making Domato open-source, Fratric worked with Apple to give them early access to the tool so that they can work on it and patch all the issues. Apple patched all the 17 bugs Domato was able to spot in the browser.

Advertisement

Fratric said he created Domato to uncover bugs in DOM (Document Object Model) engines of different browsers. DOM engines are part of each browser's rendering engine, and have typically been the source of several browser bugs.

Advertisement

"It is also interesting to compare Safari's results to Chrome's, as until a couple of years ago, they were using the same DOM engine (WebKit). It appears that after the Blink/Webkit split either the number of bugs in Blink got significantly reduced or a significant number of bugs got introduced in the new WebKit code (or both)," he said.

So why does Fratric want to open source Domato? He wants people to work on improving it so that more people can find zero-day vulnerabilities. A zero-day exploit in Firefox was used against users of Tor (a Firefox-based browser with enhanced tools for anonymity) to identify visitors to a child pornography website.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Motorola Edge 70 Ultra Camera Configuration, Other Key Features Leaked
  2. Nothing Phone 4a Series Price and Key Specs Tipped
  3. The Rookie Season 7 OTT Release Date: When and Where to Watch it Online?
  4. WhatsApp Brings a Voicemail-like Feature for Missed Voice and Video Calls
  5. Vivo S50, Vivo S50 Pro Mini Specifications Revealed Through China Telecom
  6. Tomb Raider, Star Wars, Divinity: Everything Announced at The Game Awards
  7. Galaxy Mergers Can Switch On Supermassive Black Holes, Euclid Finds
  8. Star's Wobble Around Black Hole Confirms Einstein's Century-Old Prediction
  1. Astronomers Observe Star’s Wobbling Orbit, Confirming Einstein’s Frame-Dragging
  2. Galaxy Collisions Found to Activate Supermassive Black Holes, Euclid Data Shows
  3. JWST Detects Oldest Supernova Ever Seen, Linked to GRB 250314A
  4. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  5. Blue Origin to Fly First Wheelchair User to Space on New Shepard NS-37
  6. Chandra’s New X-Ray Mapping Exposes the Invisible Engines Powering Galaxy Clusters
  7. Sasivadane Now Streaming on Amazon Prime Video: Everything You Need to Know
  8. Kuttram Purindhavan Now Streaming Online: What You Need to Know?
  9. Lyne Lancer 19 Pro With 2.01-Inch Display, SpO2 Monitoring Launched in India
  10. OpenAI and Disney Reach Licensing Agreement to Bring Its Characters to the Sora App
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.