At CES 2025, Intel let journalists into its private “Innovation Showcase,” where we saw things like prototype next-gen laptops and giant stereo 3D handheld gaming PCs.
Technology
Massive security flaw puts most popular browsers at risk on Mac
Hackers are already flooding browsers with malware and phishing links, and now researchers have discovered a vulnerability that gives them direct access to services on your laptop.
This vulnerability, known as 0.0.0.0 Day, affects all Chromium-based browsers, including Google Chrome, Firefox, Safari and Edge.
What’s concerning is that this vulnerability has been present in these browsers for the past 18 years and has only been discovered now.
SIGN UP FOR FOR KURT’S FREE NEWSLETTER AND GET INSTANT ACCESS TO THE CYBERGUY REPORT
What you need to know
The 0.0.0.0 Day vulnerability was discovered by the Israeli app security firm Oligo and subsequently reported by The Hacker News. It involves the use of IP address, 0.0.0.0, which is normally harmless. But with this vulnerability, attackers could misuse it to access and control local services on your computer.
The critical vulnerability “exposes a fundamental flaw in how browsers handle network requests, potentially granting malicious actors access to sensitive services running on local devices,” Oligo Security researcher Avi Lumelsky said.
Security researchers have found that websites with “.com” domains can communicate with services on a local network and run unauthorized code using the address 0.0.0.0. This vulnerability also allows them to bypass Private Network Access (PNA), which is supposed to stop public websites from accessing private network endpoints directly.
In simple terms, this vulnerability could allow bad actors to break into your local services and execute unauthorized actions on your device.
The vulnerability affects browsers including Google Chrome, Edge, Safari and Firefox on devices running macOS and Linux. If you’re a Windows user, you don’t have to worry because Microsoft blocks this IP address at the operating system level.
HERE’S WHAT RUTHLESS HACKERS STOLE FROM 110 MILLION AT&T CUSTOMERS
Is a fix coming?
Chrome started blocking access to the IP address 0.0.0.0 from Chromium 128 in July. Google will gradually roll out this change, completing it by Chrome 133, when the IP address will be fully blocked for all Chrome and Chromium users.
Meanwhile, Apple has already updated WebKit, the browser engine used by Safari, to block access to 0.0.0.0. Mozilla has also blocked this IP address in Firefox. To protect yourself from getting affected, keep your browser up to date.
HOW TO REMOVE YOUR PRIVATE DATA FROM THE INTERNET
Steps to update your browser
The best way to protect yourself from security flaws is to keep your browser up to date. Below are the steps to keep it updated.
How to update Chrome
- Open Google Chrome on your computer
- Click on the three dots in the top-right corner
- Select Help
- Click About Chrome
- Chrome will automatically check for updates. If an update is available, it will download and install it.
- Click Relaunch to complete the update process.
For mobile devices, you can update Chrome via the Google Play Store (Android) or App Store (iOS) by searching for Chrome and tapping Update if available
WORLD’S LARGEST STOLEN PASSWORD DATABASE UPLOADED TO CRIMINAL FORUM
How to update Microsoft Edge
- Open Microsoft Edge
- Click on the three dots in the top-right corner
- Select Help and feedback
- Click About Microsoft Edge
- Edge will automatically check for updates and install them if available
- Click Restart to update Microsoft Edge and apply any updates
For mobile devices, updates can be done through the respective app stores (Google Play Store for Android and App Store for iOS) by searching for Edge and tapping Update if available.
How to update Safari
- On a Mac, open the Apple menu
- Select System Settings
- Tap General
- Click Software Update
- If an update for Safari is available, click Update Now.
- Follow the prompts to complete the installation.
For iOS devices, updates are done through the Settings app under General > Software Update.
How to update Mozilla Firefox
- Open Firefox
- Click on the three horizontal lines (☰) in the top-right corner
- Select Help
- Click About Firefox
- Firefox will check for updates and download them automatically
- Click Restart to Update Firefox if an update was installed
For mobile devices, you can update Firefox through the Google Play Store (Android) or App Store (iOS) by searching for Firefox and tapping Update if available.
CLICK HERE FOR MORE U.S. NEWS
Additional measures to keep your data and devices safe
Below are some extra steps to take to prevent being affected by hackers exploiting security vulnerabilities.
1. Have strong antivirus software: Hackers often gain access to devices by sending infected emails or documents or tricking you into clicking a link that downloads malware. You can avoid all of this by installing strong antivirus software that will detect any potential threat before it can take over your device or router.
The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe. Get my picks for the best 2024 antivirus protection winners for your Windows, Mac, Android and iOS devices.
2. Recognize urgent requests as potential scams: Always be wary if someone is urgently requesting you to do something like send money, provide personal information or click on a lin. Chances are it’s a scam.
3. Use strong and unique passwords: Create strong passwords for your accounts and devices and avoid using the same password for multiple online accounts. Consider using a password manager to securely store and generate complex passwords. It will help you to create unique and difficult-to-crack passwords that a hacker could never guess. Second, it also keeps track of all your passwords in one place and fills passwords in for you when you’re logging into an account so that you never have to remember them yourself. The fewer passwords you remember, the less likely you will be to reuse them for your accounts. Get more details about my best expert-reviewed Password Managers of 2024 here.
4. Enable two-factor authentication: Enable two-factor authentication whenever possible. This adds an extra layer of security by requiring a second form of verification, such as a code sent to your phone, in addition to your password.
ANDROID USERS AT RISK AS BANKING TROJAN TARGETS MORE APPS
Kurt’s key takeaway
Given the newly discovered 0.0.0.0 Day vulnerability, it’s more important than ever to keep your browser up to date. While major browser companies are actively working on a fix, staying on top of software updates is crucial to protect your device. To further safeguard your online experience, be cautious of suspicious links, practice safe browsing habits, and regularly check for updates.
Given the recent discovery of the 0.0.0.0 Day vulnerability affecting major browsers like Google Chrome, Firefox, Safari and Edge, which has been present for 18 years, do you think tech companies are doing enough to ensure the security of their products and protect users from such long-standing vulnerabilities? Let us know by writing us at Cyberguy.com/Contact
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter
Ask Kurt a question or let us know what stories you’d like us to cover
Follow Kurt on his social channels
Answers to the most asked CyberGuy questions:
Copyright 2024 CyberGuy.com. All rights reserved.
Technology
Intel still dreams of modular PCs — it brought a tablet laptop gaming handheld to CES
While I was there, I also spotted a heavy metal handheld on a table that didn’t seem… fully attached… to its screen. When I lifted the screen, it came away easily.
It felt suspiciously light to be a real tablet, so I flipped it over and saw three connectors underneath:
Above it, on a shelf, was a laptop with a suspiciously sized chunk of plastic on the bottom that looked like a perfect match. A minute later, Intel gaming evangelist Colin Helms confirmed: I was looking at a concept modular PC.
That module contains a complete Intel Lunar Lake computer, the entire guts you’d need to make one work outside of peripherals and screen. It’s basically a reboot of Intel’s abandoned Compute Card idea, except it’s not all Intel’s doing and you probably shouldn’t ever expect it to ship.
It’s a concept from Quanta, a company whose name you don’t typically see on the laptops and tablets they create, because Quanta is an ODM (like Compal, Pegatron, Wistron, and Apple’s better known iPhone supplier Foxconn) that designs and manufactures hardware on behalf of brand names.
Quanta’s calling the whole modular system the “AI8A,” and the aforementioned module at its heart is the “Detachable AI Core.” Helms told me it plugs into other concept computers as well, including an all-in-one desktop that Intel didn’t have to show off. And presumably, like the Compute Card idea, you could upgrade your computer just by putting a new new module into it.
The modular laptop has lots of concept-y bells and whistles too, so many that Intel’s CES staff hadn’t even worked them all out yet.
For starts, the laptop has a motorized hinge, so you can tell it to open and close its own lid; it also claims to offer eye-tracking that lets you sling around multitasking windows just by looking at where you’d like them to be. It apparently comes with a mouse integrated into a ring that you could wear.
The most mundane: a built-in Qi wireless charging pad in the palmrest, with indicator lights to show your battery’s remaining capacity.
I couldn’t try any of it working, unfortunately, nor did I manage to ask what “AI8A” means, because I mistakenly thought it said Aiba until I checked my photos closely just now. Nor could we hotswap the module between the handheld and laptop, since the module apparently doesn’t have a battery inside.
Again, this is a cool computing concept car: it’s not likely that this computer will ever ship, even in a more practical / less gadgety form. Thankfully, we have begun to see some real, practical modularity in the laptop space since the death of Intel’s Compute Card. Framework just celebrated its fifth anniversary this week, and Dell took a smaller step forward at CES with its first modular repairable USB-C port.
Photos by Sean Hollister / The Verge
Technology
AI isn’t going anywhere: Prompts to make life easier
I was having dinner with my husband in Paris. We got the wine menu and all the names, of course, were in French. Barry wanted something equivalent to a Napa cabernet, so I took a picture of the menu and asked ChatGPT. In seconds, it recommended a wine. I double-checked with the waiter, and he gave it a thumbs-up.
Win a pair of $329 Ray-Ban Meta smart glasses. Enter here, no purchase necessary!
You might think AI is just for businesses, programmers, or the ultra tech-savvy, but it’s not. It’s for anyone willing to give it a try.
AI EXPERT: CHATGPT PROMPTS YOU’LL WISH YOU KNEW SOONER
Instead of ignoring this powerful tool, make this the year you embrace AI. It’s easier and more helpful than you think.
Let’s start with the basics
“So, uh, where do I find ChatGPT?” I get that in my email every day. Use it on the web or download it for iPhone or Android.
The free tier works for most people. I pay $20 a month for ChatGPT Plus. It’s worth it to me for access to the better features and faster response times. Start with free. If you find yourself relying on your favorite AI tool regularly, consider upgrading. It is worth considering.
ChatGPT isn’t the only option, but it is my preference (at least for now) and the most popular. You can also try Google Gemini, Perplexity and Claude.
With all these, the workflow is the same. Think of it like Google, but instead of punching in one search term and scrolling through results, you have a “conversation” with the bot to get exactly the output you want.
Like any tool, you need to use AI wisely and triple-check its results. Trust me, you don’t want to end up like those lawyers who used AI to draft court documents, only to have the judge catch the glaring mistakes.
BIOMETRIC DATA: IS IT SAFE TO HAND IT OVER TO ANY COMPANY THAT ASKS?
You’ve heard of prompts, right?
This is what we call the text, question or command you provide an AI system to guide its response or action. It’s your instruction on what you want, so the better your prompt, the more useful and accurate the response will be.
“Priming” is the insider term for telling a chatbot exactly what you want from it. With ChatGPT or any other, the more constraints you give, the better your answer. Examples: “Limit your response to 250 words,” “Give me the list in bullet points,” “Format the results as a table,” “Use this data to create a bar chart.”
Remember, AI can’t read your mind. It only knows what you tell it. Use “do” and “don’t” in your prompts to get the results you want. Say you’re cooking for friends, and some have allergies. Say, “Create a recipe for six people. Do include protein, fruits, vegetables and carbs. Don’t include dairy products, shellfish or nuts.”
7 prompts to make life easier
Make your goals actionable: “I have a goal for 2025 to [fill in the blank]. Can you help me make it SMART?” (SMART is an acronym for Specific, Measurable, Assignable, Realistic and Time-related.) Maybe you’re not there yet. Try this: “I want to [fill in the blank], but it feels overwhelming, and I don’t know where to start. Can you help me by breaking it down into more manageable tasks?”
“Give me 10 more examples”: That’s a prompt I use with ChatGPT all the time to make the chatbot a better brainstorming buddy. Some of its “ideas” are downright bad, but it might spark something creative in your brain, too.
“How can I make this better?” Add in anything you’ve written — a blog post, a travel plan, a resume or even a heartfelt email. This prompt works wonders for polishing your work and pointing out improvements, like a personal editor at your fingertips.
DO THIS WITH YOUR FAMILY VIDEOS BEFORE IT’S TOO LATE
Your very own free assistant: Say you have messy notes from a meeting. By hand, you’d spend 15 minutes turning those into an email fit for your boss or team. Instead, open a chatbot and say, “Turn these notes into a professional, friendly email to my team.” Paste your notes at the end and voila. Pro tip: Ask your bot of choice, “Is there anything that needs more details?” to fill in any missing info.
Shortcut your inbox: When you get a really long email, open your AI chatbot of choice, and type in the prompt, “Summarize this email for me. Tell me what I need to do, then write a thoughtful reply. Here is the email.” Paste in the email and let AI do its magic.
Wanna get in shape? Ask your AI to create a custom fitness plan. Try this: “Create a 30-day fitness plan for fat loss and muscle gain tailored to a [male/female] beginner at [your age].” Or get specific: “Create a four-week fitness plan to help me run a mile for the first time.” Don’t sweat it.
Spouse forgot to load the dishes again? Instead of firing off a rage-filled text, let AI step in. Ask your fave chatbot to reframe your frustration into something a bit more … constructive. I like this prompt: “Make this message sound more friendly.”
Don’t forget about privacy
It’s easy to think your bot is a trusted ally, especially when it’s pumping out helpful answers all day long. But it’s definitely not. It’s a data-collecting tool like any other.
Be smart about what you say. Never type in passwords, sensitive financial data, or confidential work or business information. My rule of thumb: Don’t tell a chatbot anything you wouldn’t want made public.
With a free ChatGPT or Perplexity account, you can turn off memory features in the app settings that remember everything you type in. For Google Gemini, you need a paid account to do this.
Get tech-smarter on your schedule
Award-winning host Kim Komando is your secret weapon for navigating tech.
Copyright 2025, WestStar Multimedia Entertainment. All rights reserved.
Technology
Amazon is ‘winding down’ some of its DEI programs
As we head toward the end of the year, I want to give another update on the work we’ve been doing around representation and inclusion.
As a large, global company that operates in different countries and industries, we serve hundreds of millions of customers from a range of backgrounds and globally diverse communities. To serve them effectively, we need millions of employees and partners that reflect our customers and communities. We strive to be representative of those customers and build a culture that’s inclusive for everyone.
In the last few years we took a new approach, reviewing hundreds of programs across the company, using science to evaluate their effectiveness, impact, and ROI – identifying the ones we believed should continue. Each one of these addresses a specific disparity, and is designed to end when that disparity is eliminated. In parallel, we worked to unify employee groups together under one umbrella, and build programs that are open to all. Rather than have individual groups build programs, we are focusing on programs with proven outcomes – and we also aim to foster a more truly inclusive culture. You can read more about this on our Together at Amazon page on A to Z.
This approach – where we move away from programs that were separate from our existing processes, and instead integrating our work into existing processes so they become durable— is the evolution to “built in” and “born inclusive,” instead of “bolted on.” As part of this evolution, we’ve been winding down outdated programs and materials, and we’re aiming to complete that by the end of 2024. We also know there will always be individuals or teams who continue to do well-intentioned things that don’t align with our company-wide approach, and we might not always see those right away. But we’ll keep at it.
We’ll continue to share ongoing updates, and appreciate your hard work in driving this progress. We believe this is important work, so we’ll keep investing in programs that help us reflect those audiences, help employees grow, thrive, and connect, and we remain dedicated to delivering inclusive experiences for customers, employees, and communities around the world.
-
Sports1 week ago
The top out-of-contract players available as free transfers: Kimmich, De Bruyne, Van Dijk…
-
Politics1 week ago
New Orleans attacker had 'remote detonator' for explosives in French Quarter, Biden says
-
Politics1 week ago
Carter's judicial picks reshaped the federal bench across the country
-
Politics7 days ago
Who Are the Recipients of the Presidential Medal of Freedom?
-
Health6 days ago
Ozempic ‘microdosing’ is the new weight-loss trend: Should you try it?
-
World1 week ago
South Korea extends Boeing 737-800 inspections as Jeju Air wreckage lifted
-
News1 week ago
21 states are getting minimum wage bumps in 2025
-
Technology2 days ago
Meta is highlighting a splintering global approach to online speech