Skip to main content

Google’s ‘Project Zero’ combats hackers, Web vulnerabilities, and more

google area 21 hq
Image used with permission by copyright holder
Google is enlisting the help of ace security experts to boost Web security and make life on the Internet safer for everyone.

The tech giant calls this initiative “Project Zero.” Think of this as a tech-ified, geeky version of the A-Team. Google made the announcement via this official blog post.

Google’s team will work to fight threats both in its own products, and those made by other companies as well. Google will work with external software makers to ensure that their offerings don’t have any holes that pose potential threats to anyone.

“You should be able to use the Web without fear that a criminal or state-sponsored actor is exploiting software bugs to infect your computer, steal secrets or monitor your communications,” Chris Evans, a member of Google’s security research team says. “Yet in sophisticated attacks, we see the use of ’zero-day’ vulnerabilities to target, for example, human rights activists or to conduct industrial espionage.”

Evans says that every bug they find will be documented in an “external database.” Only software vendors will initially be notified of these bugs, and no one else. A bug report will typically become public right when a patch is also available. To beef up this task force, Google is hiring the best and brightest security researchers they can find.

Considering that data breaches in New York State cost people over $1 billion just last year alone, we hope that Project Zero gets cracking sooner than later.

Editors' Recommendations

Konrad Krawczyk
Former Digital Trends Contributor
Konrad covers desktops, laptops, tablets, sports tech and subjects in between for Digital Trends. Prior to joining DT, he…
Google is creating ‘internet surveillance DRM,’ critics say
Google Drive in Chrome on a MacBook.

Google is working on a system to fight fraud and make the internet “more private and safe,” but it’s just come in for some blistering criticism from software engineers behind the Vivaldi web browser. According to them, it’s a “dangerous” idea that could lead to greater surveillance of ordinary people.

The subject of this kerfuffle is Google’s Web Environment Integrity project, or WEI. Its purpose, Google says, is to stymy bad actors by providing a piece of code on a website that can be checked with a trusted attestor (such as Google) to ensure the visitor is who they say they are. That could prevent cheating in games, for example, or ensure that ads are being properly served to readers.

Read more
Why is Google cutting web access for some of its workers?
Google Logo

Google is preventing some of its staff from using the internet at work, according to sources in contact with CNBC.

Having revolutionized the web with its powerful search engine before making vast sums of money off online ads, the idea of a company like Google preventing some of its own workers from accessing the internet may at first seem somewhat odd, but there is of course sound reasoning behind it.

Read more
This critical exploit could let hackers bypass your Mac’s defenses
A hacker typing on an Apple MacBook laptop while holding a phone. Both devices show code on their screens.

Microsoft has discovered a critical exploit in macOS that could grant hackers easy access to your Mac’s most important data. Dubbed ‘Migraine,’ it shows why it’s vital to update your Mac as soon as possible.

Migraine is so damaging because it can bypass Apple’s System Integrity Protection, or SIP for short. SIP is enabled by default on modern Macs and works by sandboxing sensitive parts of the computer from outside meddling. Only processes that are signed by Apple (or those with special privileges, like Apple installers) are allowed to alter something guarded by SIP.

Read more