Spyder News
  • Home
    • Home – Layout 1
  • Review
    Sony A95K MASTER Review

    Sony A95K MASTER Review

    Netatmo CO detector

    All About Netatmo CO detector

    Sony Linkbuds S Review

    Sony Linkbuds S Review

    Yi Mirror Dash Review

    Yi Mirror Dash Review

    All About OnePlus Nord CE 2

    All About OnePlus Nord CE 2

    Galaxy Buds Pro

    Galaxy Buds Pro

  • Gaming
    How do have an active clash of clans clan?

    How do have an active clash of clans clan?

    Alienware M15 R7

    Alienware M15 R7

    MSI GS77 Stealth 2022

    MSI GS77 Stealth 2022

    Lenovo IdeaPad Gaming 3 Laptop

    Lenovo IdeaPad Gaming 3 Laptop

    Razer Blade 14

    Razer Blade 14

    Gta Vi

    Gta Vi

  • Gear
    • All
    • Audio
    • Camera
    • Laptop
    • Smartphone
    OPPO Find N

    OPPO Find N

    Redmi Note 9T Review

    Redmi Note 9T Review

    Realme Pad Min

    Realme Pad Min

    Xiaomi Mi Mix 3

    Xiaomi Mi Mix 3

    pixel 6 camera review

    pixel 6 camera review

    Huawei MateBook X Pro

    All About Huawei MateBook X Pro

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Computers
    Alienware M15 R7

    Alienware M15 R7

    MSI GS77 Stealth 2022

    MSI GS77 Stealth 2022

    Lenovo IdeaPad Gaming 3 Laptop

    Lenovo IdeaPad Gaming 3 Laptop

    Razer Blade 14

    Razer Blade 14

    Fujitsu UH-X laptop review

    Fujitsu UH-X laptop review

    Company finds fraud and viruses in 92% of illegal football broadcasts on the web

    Company finds fraud and viruses in 92% of illegal football broadcasts on the web

  • Applications
    Google accidentally anticipates Mother’s Day tribute and removes Doodle from the air

    Google accidentally anticipates Mother’s Day tribute and removes Doodle from the air

    American operator Verizon announces sale of Yahoo and AOL for $ 5 billion

    American operator Verizon announces sale of Yahoo and AOL for $ 5 billion

    Microsoft finds 25 security holes in systems designed for ‘internet of things’ devices

    Microsoft finds 25 security holes in systems designed for ‘internet of things’ devices

    Experts use drone to hack Tesla car system vulnerable to Wi-Fi attack

    Experts use drone to hack Tesla car system vulnerable to Wi-Fi attack

    Glovo suffers a hack in Spain and the credentials of distributors and clients appear for sale on the Internet

    Glovo suffers a hack in Spain and the credentials of distributors and clients appear for sale on the Internet

    Telegram: these are the new features that will arrive very soon

    Telegram: these are the new features that will arrive very soon

  • Security
    The dangerous paradox that threatens the throne of the PlayStation 5

    The dangerous paradox that threatens the throne of the PlayStation 5

    YouTube’s invention so you don’t run out of mobile data

    YouTube’s invention so you don’t run out of mobile data

    European Union proposes rules for ‘high risk’ artificial intelligence

    European Union proposes rules for ‘high risk’ artificial intelligence

    U.S. senators question Apple and Google about dominance in app stores

    U.S. senators question Apple and Google about dominance in app stores

    Amazon opens UK hair salon with technology to predict the look

    Amazon opens UK hair salon with technology to predict the look

    CMS: what is it and how to use a Content Management System?

    CMS: what is it and how to use a Content Management System?

No Result
View All Result
  • Home
    • Home – Layout 1
  • Review
    Sony A95K MASTER Review

    Sony A95K MASTER Review

    Netatmo CO detector

    All About Netatmo CO detector

    Sony Linkbuds S Review

    Sony Linkbuds S Review

    Yi Mirror Dash Review

    Yi Mirror Dash Review

    All About OnePlus Nord CE 2

    All About OnePlus Nord CE 2

    Galaxy Buds Pro

    Galaxy Buds Pro

  • Gaming
    How do have an active clash of clans clan?

    How do have an active clash of clans clan?

    Alienware M15 R7

    Alienware M15 R7

    MSI GS77 Stealth 2022

    MSI GS77 Stealth 2022

    Lenovo IdeaPad Gaming 3 Laptop

    Lenovo IdeaPad Gaming 3 Laptop

    Razer Blade 14

    Razer Blade 14

    Gta Vi

    Gta Vi

  • Gear
    • All
    • Audio
    • Camera
    • Laptop
    • Smartphone
    OPPO Find N

    OPPO Find N

    Redmi Note 9T Review

    Redmi Note 9T Review

    Realme Pad Min

    Realme Pad Min

    Xiaomi Mi Mix 3

    Xiaomi Mi Mix 3

    pixel 6 camera review

    pixel 6 camera review

    Huawei MateBook X Pro

    All About Huawei MateBook X Pro

    Trending Tags

    • Best iPhone 7 deals
    • Apple Watch 2
    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • iOS 10
    • iPhone 7
    • Sillicon Valley
  • Computers
    Alienware M15 R7

    Alienware M15 R7

    MSI GS77 Stealth 2022

    MSI GS77 Stealth 2022

    Lenovo IdeaPad Gaming 3 Laptop

    Lenovo IdeaPad Gaming 3 Laptop

    Razer Blade 14

    Razer Blade 14

    Fujitsu UH-X laptop review

    Fujitsu UH-X laptop review

    Company finds fraud and viruses in 92% of illegal football broadcasts on the web

    Company finds fraud and viruses in 92% of illegal football broadcasts on the web

  • Applications
    Google accidentally anticipates Mother’s Day tribute and removes Doodle from the air

    Google accidentally anticipates Mother’s Day tribute and removes Doodle from the air

    American operator Verizon announces sale of Yahoo and AOL for $ 5 billion

    American operator Verizon announces sale of Yahoo and AOL for $ 5 billion

    Microsoft finds 25 security holes in systems designed for ‘internet of things’ devices

    Microsoft finds 25 security holes in systems designed for ‘internet of things’ devices

    Experts use drone to hack Tesla car system vulnerable to Wi-Fi attack

    Experts use drone to hack Tesla car system vulnerable to Wi-Fi attack

    Glovo suffers a hack in Spain and the credentials of distributors and clients appear for sale on the Internet

    Glovo suffers a hack in Spain and the credentials of distributors and clients appear for sale on the Internet

    Telegram: these are the new features that will arrive very soon

    Telegram: these are the new features that will arrive very soon

  • Security
    The dangerous paradox that threatens the throne of the PlayStation 5

    The dangerous paradox that threatens the throne of the PlayStation 5

    YouTube’s invention so you don’t run out of mobile data

    YouTube’s invention so you don’t run out of mobile data

    European Union proposes rules for ‘high risk’ artificial intelligence

    European Union proposes rules for ‘high risk’ artificial intelligence

    U.S. senators question Apple and Google about dominance in app stores

    U.S. senators question Apple and Google about dominance in app stores

    Amazon opens UK hair salon with technology to predict the look

    Amazon opens UK hair salon with technology to predict the look

    CMS: what is it and how to use a Content Management System?

    CMS: what is it and how to use a Content Management System?

No Result
View All Result
Spyder News
No Result
View All Result
Home Applications

Google will extend deadline given to companies to fix and update software with security holes

spydernews by spydernews
April 27, 2021
in Applications, Computers, Microsoft, Photography, Smartphone, Uncategorized
0
Google will extend deadline given to companies to fix and update software with security holes
476
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter

‘Project Zero’ investigates the safety of various products and can disclose flaws that have not been corrected by the manufacturers.

Google announced a change in the deadlines practiced by “Project Zero”, its team of “hackers for good”. For the first time, Google will give users a 30-day period to install updates provided by developers after a vulnerability has been fixed.

“Project Zero” was formed by Google to sponsor the breach in relevant software from any company, including competitors such as Apple and Microsoft. The objective is to anticipate the discovery of flaws so that they can be corrected before criminals exploit them.

Since its creation, in 2014, Projeto Zero has had some friction with developers. Under the initiative’s rules, flaws not fixed within 90 days are publicly disclosed to pressure developers to release fixes.

This pressure on developers also puts users at risk. Experts have debated the merits of each choice for years – whether it is better to keep faults confidential or publicize them to inform users and embarrass software vendors.

In the case of the flaws that were corrected by the manufacturers, Google released the technical details of the problem and almost immediately after the solution was made available to users – even before the 90-day period had elapsed.

That is, the details were published within 90 days or after the fault was corrected, whichever came first.

It is in this situation that the new deadline set by Google enters. Now, information about the vulnerabilities will be retained for 30 days after the update or solution is made available, giving users and companies more time to apply patches to their systems.

Immediate disclosure of vulnerability data does not affect companies that operate primarily with online solutions – as is the case with Google itself. In these “cloud” solutions, any update tends to be applied immediately to all users.

But this is not the case for systems and applications installed on devices, such as Android, Windows or Chrome. The availability of technical data from a failure can allow criminals to exploit the breach to attack users who have not yet updated their software.

From now on, in the case of Project Zero, they will have a period of 30 days to download and install these updates.

Developers can request extensions


Since its creation, Google has been extending the deadlines practiced by Project Zero. Today, developers can request up to 14 days of extension for the 90-day term granted for normal failures.

Project Zero’s new policy provides for the possibility of extension to the so-called “zero-day” flaws – those that are found in real attacks, not in testing environments.

Google has another team of experts, called the Threat Analysis Group, or “TAG”, which is responsible for investigating ongoing attacks on the Internet. These investigations often find unprecedented attack codes, which can exploit unknown flaws.

In this case, as the vulnerability is already known to the criminals, Google gives the developer a deadline of just seven days to speak up and publish a solution. The details of the problem are released after the deadline, whether or not there is any way around the problem.

However, the new Google rule that gives users time to install updates also applies to these cases. Therefore, problems corrected within the seven-day period will be extended to 30 days for disclosure.

Developers can also request a three-day extension for these cases, giving a total of ten days for creating a “patch”.

In this way, the maximum disclosure period for flaws already explored jumps from 7 to up to 40 days: the initial seven days, plus three requested by the developer, plus 30 if a solution is published.

Previous Post

Amazon opens UK hair salon with technology to predict the look

Next Post

Police ‘update’ Emotet virus with uninstallation program after dismantling hacker operation

Next Post
Police ‘update’ Emotet virus with uninstallation program after dismantling hacker operation

Police 'update' Emotet virus with uninstallation program after dismantling hacker operation

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended.

promoneum

influencer marketing

September 2, 2021
Google will not be at the Mobile World Congress 2021

Google will not be at the Mobile World Congress 2021

April 4, 2021

Trending.

Xiaomi Mi 8 Pro

Xiaomi Mi 8 Pro

August 16, 2022
Poco F4 GT

All About Poco F4 GT

August 9, 2022
Amazon opens UK hair salon with technology to predict the look

Amazon opens UK hair salon with technology to predict the look

April 27, 2021
Huawei MateBook X Pro

All About Huawei MateBook X Pro

August 17, 2022
Alienware M15 R7

Alienware M15 R7

August 8, 2022
Spyder News

We bring you the best Premium WordPress Themes that perfect for news, magazine, personal blog, etc. Check our landing page for details.

Follow Us

Categories

  • Apple
  • Applications
  • Audio
  • Camera
  • children
  • Computers
  • Gaming
  • Gear
  • Health
  • Laptop
  • lifestyle
  • Microsoft
  • Photography
  • Review
  • Security
  • Smartphone
  • Uncategorized

Tags

Alienware M15 R7 All About OnePlus Nord CE 2 ASUS ROG Flow Z13 Chuwi HiPad Cubot Quest Lite Review Doogee S96 Pro Galaxy Buds Pro Galaxy S21 Plus Galaxy Tab A8 Review gaming laptop Honor Magic4 Pro Review HP Envy 15 Review Huawei Honor 8X Huawei MateBook X Pro laptop Lenovo IdeaPad Gaming 3 Lenovo IdeaPad Gaming 3 Laptop Meizu X8 Review Moto Razr 5G MSI GS77 MSI GS77 Stealth 2022 Netatmo CO detector Nubia RedMagic 6 OPPO Find N pixel 6 camera review Poco F4 GT Razer Blade Razer Blade 14 Realme 9 Pro Plus realme 9i side Realme GT 2 Pro Realme Pad Min Redmi Note 9T Review Reiview review smartphone Sonos Ray Review Sony A95K MASTER Review Sony Linkbuds S Review Xiaomi Black Shark Xiaomi Mi 8 Pro Xiaomi Mi Mix 3 Xiaomi TV F2 Review Yi Mirror Dash Review ZTE Axon 20 5G
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.

No Result
View All Result
  • Home
  • Review
  • Apple
  • Applications
  • Computers
  • Gaming
  • Gear
    • Audio
    • Camera
    • Smartphone
  • Microsoft
  • Photography
  • Security

© 2023 JNews - Premium WordPress news & magazine theme by Jegtheme.