Chrome Is More Secure Than Rival Browsers, Study Says

MOUNTAIN VIEW, Calif. — A new study suggests that Chrome’s sandboxing and plug-in security features make it more secure than rival browsers Firefox and Internet Explorer.

The study was conducted by security vendor Accuvant Labs and funded by Google. However, the firm said that it reached its conclusions in the study “based on our independent data collections” and that Google gave the researchers “a clear directive to provide readers an objective understanding of relative browser security.”

Accuvant concluded its research in July and looked only at Chrome, IE and Firefox. The firm tested the browsers only on Windows 7 so the report excludes newer versions of Chrome and Firefox, ArsTechnica.com reported.

"We believe an analysis of anti-exploitation techniques is the most effective way to compare security between browser vendors," the report states. "This requires a greater depth of technical expertise than statistical analysis of CVEs, but it provides a more accurate window into the vulnerabilities of each browser."

The conclusions show that Google's sandboxing and plug-in security exceeds that of Internet Explorer, and that Google at least matches Firefox and IE in other types of security.

"The URL blacklisting services offered by all three browsers will stop fewer attacks than will go undetected," Accuvant reported.

"Both Google Chrome and Microsoft Internet Explorer implement state-of-the-art anti-exploitation technologies, but Mozilla Firefox lags behind without JIT hardening.”

The paper said that while both Google Chrome and Microsoft Internet Explorer implement the same set of anti-exploitation technologies, Google Chrome’s plug-in security and sandboxing architectures are implemented in a more thorough and comprehensive manner.

“Therefore, we believe Google Chrome is the browser that is most secured against attack," the report said.

The Accuvant report also said Chrome's sandboxing "uses a medium integrity broker process that manages the UI, creates low integrity processes and further restricts capabilities by using a limited token for a more comprehensive sandbox than the standard Windows low integrity mechanism.  The extensive use of sandboxing limits both the available attack surface and potential severity of exploitation."

With Firefox, Accuvant said that it has no sandboxing and "A compromised browser or plug-in process would not require privilege escalation to persist beyond the browser process."

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

CAM4 Debuts Weekly 'Skyy Knox's CAM Crawl' Livestream

CAM4 is launching "Skyy Knox’s CAM Crawl," a new livestream running every Sunday at 3 p.m. PDT.

Texas Judge Pauses AG Ken Paxton's Aylo Lawsuit Until SCOTUS Decision

A Texas district judge granted a request Wednesday to pause proceedings in the lawsuit filed by Attorney General Ken Paxton against Aylo over its implementation of Texas’ controversial age verification requirements for Pornhub, pending the outcome of the Free Speech Coalition-led lawsuit against Paxton, which will be heard by the Supreme Court during the next term.

Author of UN Report Recommending Worldwide Criminalization of Sex Work, Porn to Speak at NCOSE Summit

Jordanian activist Reem Alsalem, a special rapporteur on violence against women and girls at the United Nations Human Rights Council who recently issued a controversial report recommending that governments abolish all forms of sex work, including porn, will speak at anti-porn lobby NCOSE’s 2024 summit in August.

Spicey AI Voice Chat Platform Launches

Spicey AI, a platform that uses artificial intelligence to create interactive voice messages from chatbots based on adult performers, has launched.

Utherverse to Host 8th Annual VirtualCon in September

Virtual reality and metaverse technology company Utherverse will hold the eighth edition of its annual virtual conference, VirtualCon, from Sept. 26-28.

Pornhub Shuts Down Access in Nebraska Over Age Verification

Aylo began blocking access to Pornhub in Nebraska on Monday, in anticipation of the state’s new age verification law — one of many such bills promoted by religious conservatives around the country — which is scheduled to go into effect Thursday.

FeelMe AI Launches 3 New Subscription Tiers

FeelMe AI has launched three new subscription levels, allowing users to connect compatible Kiiroo sex toys to their videos for interactive solo play.

CamSoda Launches AI Girlfriend Builder

CamSoda has debuted a personalized "AI girlfriend" feature, which allows users to create their very own virtual companion at no charge, including free NSFW role-play and chat.

Free Speech Organization Comes Out in Support of Wisconsin Professor Who Posted on OnlyFans

After a University of Wisconsin-La Crosse faculty tribunal recommended stripping veteran professor of communications Joe Gow of tenure last week due to Gow having unremorsefully created and appeared in adult content, a major free speech organization has come out in his support.

MojoHost Unveils Public Cloud Service MojoCompute

MojoHost has launched MojoCompute, a new cloud service, as the central component of its MojoCloud product offerings.

Show More