Security firm issues warning over insecure browser games
Games which are developed using WebGL and are designed to run in a web broswer are leaving your PC open to back door hackers, according to consultants at Context Information Security, who claim to have found “serious flaws” in the design of the platform which is designed to give streaming games control of local resources on your PC.
The problem, according to Context, is that graphics drivers simply haven’t been written to allow remote access.
“The risks stem from the fact that most graphics cards and drivers have not been written with security in mind so that the interface they expose assumes that the applications are trusted,” says Michael Jordon, Research and Development Manager at Context. “While this may be true for local applications, the use of WebGL-enabled browser-based applications with certain graphics cards now poses serious threats from breaking the cross domain security principle to denial of service attacks, potentially leading to full exploitation of a user’s machine.”