Technology
Massive security flaw puts most popular browsers at risk on Mac
Hackers are already flooding browsers with malware and phishing links, and now researchers have discovered a vulnerability that gives them direct access to services on your laptop.
This vulnerability, known as 0.0.0.0 Day, affects all Chromium-based browsers, including Google Chrome, Firefox, Safari and Edge.
What’s concerning is that this vulnerability has been present in these browsers for the past 18 years and has only been discovered now.
SIGN UP FOR FOR KURT’S FREE NEWSLETTER AND GET INSTANT ACCESS TO THE CYBERGUY REPORT
A person using a laptop with Google Chrome browser (Kurt “CyberGuy” Knutsson)
What you need to know
The 0.0.0.0 Day vulnerability was discovered by the Israeli app security firm Oligo and subsequently reported by The Hacker News. It involves the use of IP address, 0.0.0.0, which is normally harmless. But with this vulnerability, attackers could misuse it to access and control local services on your computer.
The critical vulnerability “exposes a fundamental flaw in how browsers handle network requests, potentially granting malicious actors access to sensitive services running on local devices,” Oligo Security researcher Avi Lumelsky said.
Security researchers have found that websites with “.com” domains can communicate with services on a local network and run unauthorized code using the address 0.0.0.0. This vulnerability also allows them to bypass Private Network Access (PNA), which is supposed to stop public websites from accessing private network endpoints directly.
In simple terms, this vulnerability could allow bad actors to break into your local services and execute unauthorized actions on your device.
The vulnerability affects browsers including Google Chrome, Edge, Safari and Firefox on devices running macOS and Linux. If you’re a Windows user, you don’t have to worry because Microsoft blocks this IP address at the operating system level.
A browser displayed on a laptop (Kurt “CyberGuy” Knutsson)
HERE’S WHAT RUTHLESS HACKERS STOLE FROM 110 MILLION AT&T CUSTOMERS
Is a fix coming?
Chrome started blocking access to the IP address 0.0.0.0 from Chromium 128 in July. Google will gradually roll out this change, completing it by Chrome 133, when the IP address will be fully blocked for all Chrome and Chromium users.
Meanwhile, Apple has already updated WebKit, the browser engine used by Safari, to block access to 0.0.0.0. Mozilla has also blocked this IP address in Firefox. To protect yourself from getting affected, keep your browser up to date.
HOW TO REMOVE YOUR PRIVATE DATA FROM THE INTERNET
Steps to update your browser
The best way to protect yourself from security flaws is to keep your browser up to date. Below are the steps to keep it updated.
How to update Chrome
- Open Google Chrome on your computer
- Click on the three dots in the top-right corner
- Select Help
- Click About Chrome
- Chrome will automatically check for updates. If an update is available, it will download and install it.
- Click Relaunch to complete the update process.
For mobile devices, you can update Chrome via the Google Play Store (Android) or App Store (iOS) by searching for Chrome and tapping Update if available
Google Chrome browser (Kurt “CyberGuy” Knutsson)
WORLD’S LARGEST STOLEN PASSWORD DATABASE UPLOADED TO CRIMINAL FORUM
How to update Microsoft Edge
- Open Microsoft Edge
- Click on the three dots in the top-right corner
- Select Help and feedback
- Click About Microsoft Edge
- Edge will automatically check for updates and install them if available
- Click Restart to update Microsoft Edge and apply any updates
For mobile devices, updates can be done through the respective app stores (Google Play Store for Android and App Store for iOS) by searching for Edge and tapping Update if available.
Microsoft Edge browser (Kurt “CyberGuy” Knutsson)
How to update Safari
- On a Mac, open the Apple menu
- Select System Settings
- Tap General
- Click Software Update
- If an update for Safari is available, click Update Now.
- Follow the prompts to complete the installation.
For iOS devices, updates are done through the Settings app under General > Software Update.
Safari browser (Kurt “CyberGuy” Knutsson)
How to update Mozilla Firefox
- Open Firefox
- Click on the three horizontal lines (☰) in the top-right corner
- Select Help
- Click About Firefox
- Firefox will check for updates and download them automatically
- Click Restart to Update Firefox if an update was installed
For mobile devices, you can update Firefox through the Google Play Store (Android) or App Store (iOS) by searching for Firefox and tapping Update if available.
CLICK HERE FOR MORE U.S. NEWS
Mozilla Firebox browser (Kurt “CyberGuy” Knutsson)
Additional measures to keep your data and devices safe
Below are some extra steps to take to prevent being affected by hackers exploiting security vulnerabilities.
1. Have strong antivirus software: Hackers often gain access to devices by sending infected emails or documents or tricking you into clicking a link that downloads malware. You can avoid all of this by installing strong antivirus software that will detect any potential threat before it can take over your device or router.
The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe. Get my picks for the best 2024 antivirus protection winners for your Windows, Mac, Android and iOS devices.
2. Recognize urgent requests as potential scams: Always be wary if someone is urgently requesting you to do something like send money, provide personal information or click on a lin. Chances are it’s a scam.
3. Use strong and unique passwords: Create strong passwords for your accounts and devices and avoid using the same password for multiple online accounts. Consider using a password manager to securely store and generate complex passwords. It will help you to create unique and difficult-to-crack passwords that a hacker could never guess. Second, it also keeps track of all your passwords in one place and fills passwords in for you when you’re logging into an account so that you never have to remember them yourself. The fewer passwords you remember, the less likely you will be to reuse them for your accounts. Get more details about my best expert-reviewed Password Managers of 2024 here.
4. Enable two-factor authentication: Enable two-factor authentication whenever possible. This adds an extra layer of security by requiring a second form of verification, such as a code sent to your phone, in addition to your password.
ANDROID USERS AT RISK AS BANKING TROJAN TARGETS MORE APPS
Kurt’s key takeaway
Given the newly discovered 0.0.0.0 Day vulnerability, it’s more important than ever to keep your browser up to date. While major browser companies are actively working on a fix, staying on top of software updates is crucial to protect your device. To further safeguard your online experience, be cautious of suspicious links, practice safe browsing habits, and regularly check for updates.
Given the recent discovery of the 0.0.0.0 Day vulnerability affecting major browsers like Google Chrome, Firefox, Safari and Edge, which has been present for 18 years, do you think tech companies are doing enough to ensure the security of their products and protect users from such long-standing vulnerabilities? Let us know by writing us at Cyberguy.com/Contact
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter
Ask Kurt a question or let us know what stories you’d like us to cover
Follow Kurt on his social channels
Answers to the most asked CyberGuy questions:
Copyright 2024 CyberGuy.com. All rights reserved.
Technology
Soundcore new Space 2 promise improved ANC and sound
We finally have an update to the Soundcore Space One that launched two and a half years ago. At MWC 2026, Soundcore has announced the Space 2, which will be available in the US on April 21st in three colors — linen white, jet black, and seafoam green — for $129.99. That’s $30 more than the Space One’s original price.
According to Soundcore, the Space 2 have had a full-band noise cancellation upgrade with the focus of those improvements on the low-frequency sounds we all generally use ANC headphones to block — things like airplane, train, and bus engine sounds while traveling. The Space 2 use the same number of microphones as the Space One for noise canceling, instead relying on optimized mic placement and structure and materials improvements for the boost in performance.
Redesigned 40mm drivers incorporate dual layers in their design. There’s a silk diaphragm with metal ceramic that supposedly results in faster transient response — the driver’s ability to respond to sudden sound quickly and accurately — with better balanced sound reproduction. The Space One had great sound performance for the price, but I’m all for any improvement to sound performance accuracy. Like the Space One, the Space 2 will support LDAC high-res audio.
The headphones connect wirelessly over Bluetooth 6.1, although they do not support Auracast transmissions — an unfortunate exclusion. There’s also a 3.5mm jack for a wired connection.
Battery life has been increased to up to 50 hours with ANC and 70 hours with ANC off. This is up from 40 hours with ANC and 55 hours without ANC with the Space One headphones. With a five-minute charge the Space 2 get an additional four hours of listening.
The Space 2 will include many of the features found on the Space One. You can use HearID 3.0 to go through a series of sound samples to tune the headphones’ sound to your preferences. It worked well for me on the Space One to get them closer to a sound I liked, with a bit of the edge taken off the higher frequencies. There’s also a sensor that detects when you remove the headphones and stops playback so you don’t miss any of your music or podcast. They once again come with a cloth bag that matches the color of the headphones instead of a case, which is one change I wish Soundcore had made, as the cloth bag doesn’t offer as much protection if you tend to throw your headphones into your backpack or bag.
The Soundcore Space One were among the best budget ANC headphones when they came out, and still hold up to more recent releases. But with the bump in price to over $100 for the Space 2, there’s a bit more expectation on them. ANC performance continues to improve — and products get cheaper — across manufacturers, so the Soundcore Space 2 has some competition from companies like Sony, EarFun, and JLab. If the ANC on the Space 2 stands up to current budget headphones and they still sound as good and are as comfortable as the Space One, you can expect to see the new Soundcore Space 2 on many recommendation lists.
Technology
Tired of websites blocking your VPN? A dedicated IP fixes that
NEWYou can now listen to Fox News articles!
If you have ever turned on your VPN and suddenly could not log in to your bank, email, streaming service or work portal, you are not imagining things. In fact, this is one of the most common frustrations VPN users face today.
However, the issue is not that VPNs stopped working. Instead, websites have become far more aggressive about blocking traffic that looks suspicious.
As a result, the way your VPN is built now matters just as much as whether you use one at all.
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter
Shared VPN IPs often trigger red flags, which is why banks, email providers and streaming sites sometimes block access. (Kurt “CyberGuy” Knutsson)
Why websites block many VPN connections
Most VPNs give you a shared IP address. As a result, hundreds or even thousands of people can appear online from the same address at the same time. From a website’s perspective, that traffic pattern raises red flags. When platforms detect too many logins, rapid location changes or unusual activity tied to one IP, they step in quickly. In many cases, they respond by:
- Blocking access
- Triggering captchas
- Requiring extra verification codes
- Temporarily locking accounts
Meanwhile, you did nothing wrong. Instead, you end up dealing with restrictions caused by other users sharing that same IP address.
What a dedicated IP does differently
With a dedicated IP, you get an address that belongs only to you. Unlike shared VPN connections, no one else uses it.
Each time you connect, you use the same IP address. As a result, you avoid sharing traffic, rotating locations or competing with random users whose activity could trigger blocks.
Because of that consistency, your connection looks much more like a typical home or office internet setup. And that simple difference can dramatically reduce website suspicion and login headaches.
NEW YORK HALTS ROBOTAXI EXPANSION PLAN
A dedicated IP gives you a consistent address that looks more like a normal home connection, reducing captchas and login alerts. (Kurt “CyberGuy” Knutsson)
What a dedicated IP can do that shared VPN IPs usually can’t
That consistency does more than reduce suspicion; it improves how smoothly you access the sites and services you use every day.
Access more websites without blocks
Banks, government portals, healthcare sites, and streaming services are far less likely to block a dedicated IP because it does not show heavy or erratic traffic patterns.
Reduce captchas and security challenges
Those endless “prove you’re human” messages are usually triggered by shared IP abuse. A dedicated IP dramatically reduces them.
Make banking and email logins smoother
Financial institutions and email providers often flag constantly changing IP addresses as suspicious. A dedicated IP stays consistent, so login alerts and lockouts happen far less often.
Support remote work and secure systems
Some employers only allow access from approved IP addresses. Shared VPN IPs cannot be approved. Dedicated IPs can.
Improve streaming reliability
Shared VPN IPs are often the first to get blocked when streaming services crack down. Dedicated IPs are less likely to be flagged because traffic looks normal and predictable.
What a dedicated IP does not do
A dedicated IP:
- Does not remove encryption
- Does not expose your identity
- Does not weaken your privacy
Your traffic remains encrypted, and your real location stays hidden. You simply get a connection that websites trust more.
Who benefits most from a dedicated IP
A dedicated IP is especially helpful if you:
- Use online banking regularly
- Travel and access sites from different locations
- Work remotely
- Stream often
- Get tired of captchas and blocked pages
- Want a VPN that feels normal to use
GOOGLE DISMANTLES 9M-DEVICE ANDROID HIJACK NETWORK
With fewer blocks and smoother logins, a dedicated IP helps your VPN work quietly in the background instead of getting in your way. (Kurt “CyberGuy” Knutsson)
How to choose a VPN that offers a dedicated IP
If you want these benefits, look for a VPN provider that offers a dedicated IP option built directly into its service. Some providers include it in premium plans, while others offer it as an add-on. Either way, the process should be simple. You should be able to select your dedicated IP inside the app without advanced setup or manual configuration. Before signing up, check that the provider also offers strong speeds, reliable uptime and clear privacy policies. A dedicated IP improves access, but overall performance still matters.
What to look for beyond a dedicated IP
A dedicated IP reduces blocks. However, a quality VPN should also deliver strong security and smooth performance.
Fast, stable connections: Speed matters for streaming, video calls and everyday browsing. Look for providers known for consistent performance.
Wide server coverage: More server locations give you flexibility when traveling and help reduce location errors.
Clear privacy practices: Choose a VPN with a strict no-logs policy and independent audits when possible.
Secure server technology: Modern VPNs often use RAM-based servers that automatically wipe data on reboot.
Easy-to-use apps: Protection should feel simple, not technical. Clean apps across major devices make daily use effortless.
For the best VPN software, see my expert review of the best VPNs for browsing the web privately on your Windows, Mac, Android & iOS devices at Cyberguy.com
Kurt’s key takeaway
If your VPN keeps getting blocked, the problem may not be the VPN itself. It may be the shared IP address behind it. Websites are increasingly aggressive about suspicious traffic. When hundreds of users share the same IP, banks, email providers and streaming platforms take notice. That is when the captchas, verification codes and account lockouts start. A dedicated IP changes that experience. You still get encryption. You still protect your real location. But your connection looks stable and predictable, which helps you avoid constant interruptions.
CLICK HERE TO DOWNLOAD THE FOX NEWS APP
Should protecting your privacy really mean fighting with your bank, email, and streaming apps? Let us know by writing to us at Cyberguy.com
Sign up for my FREE CyberGuy Report
Get my best tech tips, urgent security alerts, and exclusive deals delivered straight to your inbox. Plus, you’ll get instant access to my Ultimate Scam Survival Guide – free when you join my CYBERGUY.COM newsletter
Copyright 2026 CyberGuy.com. All rights reserved.
Technology
Polymarket defends its decision to allow betting on war as ‘invaluable’
Polymarket has been allowing people to bet on when the US would strike Iran next. Obviously, now that it’s actually happened and people have died, the prediction betting market is feeling some pressure. The site has been at the center of controversy before, including suspicions of insider trading on the Super Bowl halftime show and the capture of Venezuelan President Nicolás Maduro.
In a statement posted on its site, Polymarket defended its decision to allow betting on the potential start of a war, saying that it was an “invaluable” source of news and answers, before taking shots at traditional media and Elon Musk’s X. The statement reads:
…
Read the full story at The Verge.
-
World4 days agoExclusive: DeepSeek withholds latest AI model from US chipmakers including Nvidia, sources say
-
Massachusetts4 days agoMother and daughter injured in Taunton house explosion
-
Montana1 week ago2026 MHSA Montana Wrestling State Championship Brackets And Results – FloWrestling
-
Denver, CO4 days ago10 acres charred, 5 injured in Thornton grass fire, evacuation orders lifted
-
Louisiana7 days agoWildfire near Gum Swamp Road in Livingston Parish now under control; more than 200 acres burned
-
Technology1 week agoYouTube TV billing scam emails are hitting inboxes
-
Technology1 week agoStellantis is in a crisis of its own making
-
Politics1 week agoOpenAI didn’t contact police despite employees flagging mass shooter’s concerning chatbot interactions: REPORT