🕐 --:--
-- --
عاجل
⚡ عاجل: كريستيانو رونالدو يُتوّج كأفضل لاعب كرة قدم في العالم ⚡ أخبار عاجلة تتابعونها لحظة بلحظة على خبر ⚡ تابعوا آخر المستجدات والأحداث من حول العالم
⌘K
AI مباشر
392668 مقال 248 مصدر نشط 79 قناة مباشرة 4049 خبر اليوم
آخر تحديث: منذ ثانية

Microsoft Does U-Turn On Edge ‘By Design’ Password Vulnerability

تكنولوجيا
Forbes
2026/05/19 - 13:35 504 مشاهدة
InnovationCybersecurityMicrosoft Does U-Turn On Edge ‘By Design’ Password VulnerabilityByDavey Winder,Senior Contributor.Forbes contributors publish independent expert analyses and insights. Davey Winder is a veteran cybersecurity writer, hacker and analyst.Follow AuthorMay 19, 2026, 09:35am EDT--:-- / --:--This voice experience is generated by AI. Learn more.This voice experience is generated by AI. Learn more.Microsoft pulls u-turn on Edge password security issue.SOPA Images/LightRocket via Getty ImagesMicrosoft has now confirmed that a “defense-in-depth change will come to every supported version of Edge” after initially refusing to address a password vulnerability identified for users of the web browser password manager. When I first reported that a researcher had publicly disclosed the security vulnerability, whereby all saved passwords were loaded into memory, in plaintext, at startup, Microsoft said that this happened “by design” and the behavior fell “within the expected threat model.” That was 10 days ago. Now, Microsoft has said that it will “no longer load passwords into memory on startup,” and starting with version 148 and “every supported version of Edge” will get the update, the rollout of which is now being prioritized.ForbesMy Password Has Been Stolen—What Happens Next?By Davey WinderThe Microsoft Edge Saved Passwords Vulnerability ExplainedA security researcher went public at the start of May after Microsoft told him that the password security vulnerability he had found in the Edge browser was by design, and therefore would not be moving forward with his vulnerability report or making any changes to rectify. “Microsoft Edge loads all your saved passwords into memory in cleartext,” Tom Jøran Sønstebyseter Rønning said, “even when you’re not using them.” I mean, if leaving decrypted plaintext passwords in Edge process memory after startup, regardless of whether they are used during that session, isn’t a security vulnerability, then, frankly, I’m not s...
مشاركة:

مقالات ذات صلة

AI
يا هلا! اسألني أي شي 🎤