Skip to main content

Google’s ‘Project Zero’ combats hackers, Web vulnerabilities, and more

google area 21 hq
Image used with permission by copyright holder
Google is enlisting the help of ace security experts to boost Web security and make life on the Internet safer for everyone.

The tech giant calls this initiative “Project Zero.” Think of this as a tech-ified, geeky version of the A-Team. Google made the announcement via this official blog post.

Google’s team will work to fight threats both in its own products, and those made by other companies as well. Google will work with external software makers to ensure that their offerings don’t have any holes that pose potential threats to anyone.

“You should be able to use the Web without fear that a criminal or state-sponsored actor is exploiting software bugs to infect your computer, steal secrets or monitor your communications,” Chris Evans, a member of Google’s security research team says. “Yet in sophisticated attacks, we see the use of ’zero-day’ vulnerabilities to target, for example, human rights activists or to conduct industrial espionage.”

Evans says that every bug they find will be documented in an “external database.” Only software vendors will initially be notified of these bugs, and no one else. A bug report will typically become public right when a patch is also available. To beef up this task force, Google is hiring the best and brightest security researchers they can find.

Considering that data breaches in New York State cost people over $1 billion just last year alone, we hope that Project Zero gets cracking sooner than later.

Editors' Recommendations

Konrad Krawczyk
Former Digital Trends Contributor
Konrad covers desktops, laptops, tablets, sports tech and subjects in between for Digital Trends. Prior to joining DT, he…
Why is Google cutting web access for some of its workers?
Google Logo

Google is preventing some of its staff from using the internet at work, according to sources in contact with CNBC.

Having revolutionized the web with its powerful search engine before making vast sums of money off online ads, the idea of a company like Google preventing some of its own workers from accessing the internet may at first seem somewhat odd, but there is of course sound reasoning behind it.

Read more
This critical exploit could let hackers bypass your Mac’s defenses
A hacker typing on an Apple MacBook laptop while holding a phone. Both devices show code on their screens.

Microsoft has discovered a critical exploit in macOS that could grant hackers easy access to your Mac’s most important data. Dubbed ‘Migraine,’ it shows why it’s vital to update your Mac as soon as possible.

Migraine is so damaging because it can bypass Apple’s System Integrity Protection, or SIP for short. SIP is enabled by default on modern Macs and works by sandboxing sensitive parts of the computer from outside meddling. Only processes that are signed by Apple (or those with special privileges, like Apple installers) are allowed to alter something guarded by SIP.

Read more
Hackers may have stolen the master key to another password manager
keepass master password plain text vulnerability open padlock cybersecurity

The best password managers are meant to keep all your logins and credit card info safe and secure, but a major new vulnerability has just put users of the KeePass password manager at serious risk of being breached.

In fact, the exploit allows an attacker to steal a KeePass user’s master password in plain text -- in other words, in an unencrypted form -- simply by extracting it from the target computer’s memory. It’s a remarkably simple hack, yet one that could have worrying implications.

Read more