Chrome Is More Secure Than Rival Browsers, Study Says

MOUNTAIN VIEW, Calif. — A new study suggests that Chrome’s sandboxing and plug-in security features make it more secure than rival browsers Firefox and Internet Explorer.

The study was conducted by security vendor Accuvant Labs and funded by Google. However, the firm said that it reached its conclusions in the study “based on our independent data collections” and that Google gave the researchers “a clear directive to provide readers an objective understanding of relative browser security.”

Accuvant concluded its research in July and looked only at Chrome, IE and Firefox. The firm tested the browsers only on Windows 7 so the report excludes newer versions of Chrome and Firefox, ArsTechnica.com reported.

"We believe an analysis of anti-exploitation techniques is the most effective way to compare security between browser vendors," the report states. "This requires a greater depth of technical expertise than statistical analysis of CVEs, but it provides a more accurate window into the vulnerabilities of each browser."

The conclusions show that Google's sandboxing and plug-in security exceeds that of Internet Explorer, and that Google at least matches Firefox and IE in other types of security.

"The URL blacklisting services offered by all three browsers will stop fewer attacks than will go undetected," Accuvant reported.

"Both Google Chrome and Microsoft Internet Explorer implement state-of-the-art anti-exploitation technologies, but Mozilla Firefox lags behind without JIT hardening.”

The paper said that while both Google Chrome and Microsoft Internet Explorer implement the same set of anti-exploitation technologies, Google Chrome’s plug-in security and sandboxing architectures are implemented in a more thorough and comprehensive manner.

“Therefore, we believe Google Chrome is the browser that is most secured against attack," the report said.

The Accuvant report also said Chrome's sandboxing "uses a medium integrity broker process that manages the UI, creates low integrity processes and further restricts capabilities by using a limited token for a more comprehensive sandbox than the standard Windows low integrity mechanism.  The extensive use of sandboxing limits both the available attack surface and potential severity of exploitation."

With Firefox, Accuvant said that it has no sandboxing and "A compromised browser or plug-in process would not require privilege escalation to persist beyond the browser process."

Related:  

Copyright © 2024 Adnet Media. All Rights Reserved. XBIZ is a trademark of Adnet Media.
Reproduction in whole or in part in any form or medium without express written permission is prohibited.

More News

Dirty Cinema Launches New Paysite 'MILFuckd'

Dirty Cinema has launched a new paysite, MILFuckd.com, on its network.

Braindance Unveils '6DOF' VR Tech

Interactive virtual reality platform Braindance has debuted its new Six Degrees of Freedom (6DOF) VR technology.

Kiiroo, Pineapple Support Launch 'Empower Hour' Series on FeelHubX YouTube Channel

Kiiroo and Pineapple Support have teamed up to launch the “Empower Hour” series on the FeelHubX YouTube channel.

Kansas Law Firm Deploys Religion, Bunk Science While Recruiting Plaintiffs Under AV Law

Kansas-based personal injury law firm Mann Wyatt Tanksley is promoting debunked scientific theories and leveraging religious affiliation against the industry while it seeks potential plaintiffs for lawsuits against adult companies under the state’s age verification law.

UK Tech Secretary Lists Age Verification Among OSA Priorities

Peter Kyle, the U.K.’s Secretary of State for Science, Innovation and Technology, on Wednesday made public a draft version of his priorities for implementing the Online Safety Act (OSA), including age verification.

AEBN Publishes Popular Seraches by Country for September, October

AEBN has released its list of popular searches from its straight and gay theaters in all 50 states and the District of Columbia.

Avery Jane Featured on 'Adult Time Podcast'

Avery Jane is the latest guest on the “Adult Time Podcast,” hosted by studio CCO Bree Mills.

FSC: Kansas Law Firm Threatens Adult Site Over Age Verification

The Free Speech Coalition (FSC) has been notified that Kansas law firm Mann Wyatt Tanksley has sent a letter threatening an adult website with a lawsuit for breaking the state's age verification law.

10th Circuit Rejects Final FSC Appeal in Utah AV Case

The United States Court of Appeals for the 10th Circuit on Monday rejected a motion by Free Speech Coalition (FSC) requesting that the full court rehear its appeal in Free Speech Coalition v. Anderson, the industry trade association’s challenge to Utah’s age verification law.

Trump Nominates Project 2025 Contributor, Section 230 Foe to Chair FCC

President-elect Donald Trump has nominated, as his pick to head the Federal Communications Commission, Brendan Carr — an author of Project 2025 who has called for gutting Section 230 protections.

Show More