Guardio
Read post

“MyFlaw” — Cross Platform 0-Day RCE Vulnerability Discovered in Opera’s Browser

A critical zero-day vulnerability was discovered in Opera's browser that allowed attackers to execute malicious files using a specially crafted browser extension. The vulnerability was found in Opera's My Flow feature, which has the potential for high security risks. The Guardio Labs research team disclosed the issue to Opera and the company responded promptly with a fix.

    #cyber#vulnerability#browsers
Jan 15, 2024•12m read time•From medium.com
Post cover image
Table of contents
“MyFlaw” — Cross Platform 0-Day RCE Vulnerability Discovered in Opera’s BrowserFrom Opera’s My-Flow To The RCE FlawThe Hidden Built-In ExtensionExploiting Opera-Controlled Domains’ PermissionsInjecting Code Via Extension ManipulationsOvercoming CSP/SRI In a Surprising WaySimulating “My Flow” to Send Malicious PayloadOne Final Catch — From Zero to One ClickFull Scope Exploit Extension POCDisclosure And Working With OperaRemediation And Final Thoughts
17 Impressions
Guardio's image
Guardio

Guardio's platform is a resource for cybersecurity professionals and internet users, offering insigh...

0 Followers

•

5 Upvotes

Would you recommend this post?

Copy link
WhatsApp
Facebook
X
New Squad
  • © 2026 Daily Dev Ltd.
  • Guidelines
  • Explore
  • Tags
  • Sources
  • Squads
  • Leaderboard