Subscribe / Unsubscribe Enewsletters | Login | Register

Pencil Banner

Google bets $20K that Chrome can't be hacked

Gregg Keizer | Feb. 3, 2011
Adds prize money to this year's Pwn2Own browser hacking contest

Google's participation in this year's Pwn2Own may be a mark of its confidence that Chrome can't be hacked. Although Chrome has been one of the browser targets at Pwn2Own since 2009, no researcher has exploited the browser and grabbed the cash.

IE, Firefox and Safari have fallen to attackers each of the last two years, sometimes in an embarrassingly short amount of time. In 2009, one researcher -- a German computer science major who gave only his first name, Nils -- hit the trifecta by exploiting all three browsers and taking home $15,000 total, $5,000 for each hack.

Charlie Miller, the only researcher to have won Pwn2Own prizes three consecutive years, wouldn't commit last week to trying again, but on Wednesday he noticed the $20,000 for Chrome.

"Pwn2own now offering 20k for attack on Chrome," said Miller on Twitter. "Must be hard, glad Mac OS X doesn't sandbox their browser."

Miller is a Mac hacking authority -- he co-authored The Mac Hacker's Handbook with Dino Dai Zovi, a 2007 Pwn2Own winner -- and has exploited Safari each of the last three years. As he pointed out, Safari is not sandboxed.

TippingPoint will also run a mobile hacking track at Pwn2Own next month that will let researchers try to exploit smartphones running Apple's iOS, Google's Android, Microsoft's Windows 7 Phone and RIM's BlackBerry OS.

Successful smartphone attacks will be awarded $15,000.


Previous Page  1  2 

Sign up for Computerworld eNewsletters.