Friday, 20 Mar 2026
Subscribe
logo
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Font ResizerAa
Data Center NewsData Center News
Search
  • Global
  • AI
  • Cloud Computing
  • Edge Computing
  • Security
  • Investment
  • Sustainability
  • More
    • Colocation
    • Quantum Computing
    • Regulation & Policy
    • Infrastructure
    • Power & Cooling
    • Design
    • Innovations
    • Blog
Have an existing account? Sign In
Follow US
© 2022 Foxiz News Network. Ruby Design Company. All Rights Reserved.
Data Center News > Blog > Security > Researcher reveals ‘catastrophic’ security flaw in the Arc browser
Security

Researcher reveals ‘catastrophic’ security flaw in the Arc browser

Last updated: September 20, 2024 8:32 pm
Published September 20, 2024
Share
Grayscale Arc logo on pink and black background
SHARE

Arc has a function known as Boosts that lets you customise any web site with customized CSS and Javascript. Since operating arbitrary Javascript on web sites has potential safety issues, we opted to not make Boosts with customized Javascript shareable throughout members, however we nonetheless synced them to our server in order that your individual Boosts can be found throughout units.

We use Firebase because the backend for sure Arc options (extra on this under), and use it to persist Boosts for each sharing and syncing throughout units. Sadly our Firebase ACLs (Entry Management Lists, the best way Firebase secures endpoints) have been misconfigured, which allowed customers Firebase requests to alter the creatorID of a Increase after it had been created. This allowed any Increase to be assigned to any person (offered you had their userID), and thus activate it for them, resulting in customized CSS or JS operating on the web site the increase was energetic on.

Source link

See also  The ransomware business is booming, even as enforcers shut down some players
TAGGED: Arc, browser, catastrophic, flaw, Researcher, reveals, security
Share This Article
Twitter Email Copy Link Print
Previous Article New System Stores Data, Plays Chess, and Solves Sudoku Puzzles New System Stores Data, Plays Chess, and Solves Sudoku Puzzles
Next Article Zenlayer’s network infrastructure expansion boosts Asia’s AI future Zenlayer’s network infrastructure expansion boosts Asia’s AI future
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Your Trusted Source for Accurate and Timely Updates!

Our commitment to accuracy, impartiality, and delivering breaking news as it happens has earned us the trust of a vast audience. Stay ahead with real-time updates on the latest events, trends.
FacebookLike
TwitterFollow
InstagramFollow
YoutubeSubscribe
LinkedInFollow
MediumFollow
- Advertisement -
Ad image

Popular Posts

New white paper reveals how smarter water treatment cut corrosion and saved 34 million gallons

System Efficiency and Environmental Influence. The great doc gives an in-depth look into ChemTreat’s state-of-the-art…

April 23, 2025

Greece Data Center Market Report 2024: Market Projected at

Dublin, April 11, 2024 (GLOBE NEWSWIRE) -- The "Greece Data Center Market - Investment Analysis…

April 13, 2024

How Standardized Testing Propels AI Innovation

Synthetic Intelligence (AI) is remodeling industries on a world scale by performing complicated duties that…

October 9, 2024

Meta Building New Gigawatt-Sized Data Center in Texas

(Bloomberg) -- Meta Platforms is constructing a brand new gigawatt-sized knowledge middle in Texas to…

October 15, 2025

Zara’s use of AI shows how retail workflows are quietly changing

Zara is testing how far generative AI might be pushed into on a regular basis…

December 19, 2025

You Might Also Like

CloserStill Media reveals Data Center Americas 2027
Infrastructure

CloserStill Media reveals Data Center Americas 2027

By saad
shutterstock 676845610 21.12.20 emerging network edge trends to watch out for in 2021 100869154 pos
Global Market

Cato Networks unveils GPU-powered SASE with native AI security controls

By saad
Cyber Security & Cloud Congress North America
Cloud Computing

Cyber Security & Cloud Congress North America 2026

By saad
Akamai and NVIDIA launch hardware-based security for critical infrastructure
Power & Cooling

Akamai and NVIDIA launch hardware-based security for critical infrastructure

By saad
Data Center News
Facebook Twitter Youtube Instagram Linkedin

About US

Data Center News: Stay informed on the pulse of data centers. Latest updates, tech trends, and industry insights—all in one place. Elevate your data infrastructure knowledge.

Top Categories
  • Global Market
  • Infrastructure
  • Innovations
  • Investments
Usefull Links
  • Home
  • Contact
  • Privacy Policy
  • Terms & Conditions

© 2024 – datacenternews.tech – All rights reserved

Welcome Back!

Sign in to your account

Lost your password?
We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.
You can revoke your consent any time using the Revoke consent button.