|
|
|||||||
|
||||||||
|
Platinax Internet >> Platinax Internet News
« Pension funds need big bluechip rise | Main | Consumer Electronics Show: Fun in the rain at Las Vegas » January 08, 2005Secunia unveils browser flaws: IE & Mozilla Firefox affectedSecurity company Secunia reported on serious flaws in both Internet Explorer and Mozilla Firefox could leave users vulnerable to hacking attacks. Secunia updated it advisory Microsoft Internet Explorer Multiple Vulnerabilities to "extremely critical" after exploit code for one of three reported vulnerabilities was posted on the internet. According to the CNet report IE flaw threat hits the roof: Exploit code for one of the vulnerabilities, a flaw in an HTML Help control, was published on the Internet on Dec. 21 in an advisory by GreyHats Security Group. However, new vulnerabilities have also been reported in the increasingly popular Mozilla Firefox browser, as in Firefox flaw raises phishing fears: The flaw in Mozilla Firefox 1.0, details of which were published by security company Secunia on Tuesday, could allow hackers to spoof the URL in the download dialog box that pops up when a Firefox user tries to download an item from a Web site. This flaw is caused by the dialog box incorrectly displaying long sub-domains and paths, which can be exploited to conceal the actual source of the download. However, as pointed out, users would have to click a link in an e-mail to a phishing site, and then download the malicious code for the exploit to work - and while Internet Explorer remains the phishing favourite due to its market share in the browser market, the warning on the Firefox exploit is not rated so severe as the Internet Exploror 6 warning above. Microsoft has already announced that 3 "critical" security patches will be released next week for Windows, but have yet to comment on whether these patches will address the vulnerabilities in Internet Explorer. Posted by at January 8, 2005 03:54 PM > Discuss this in the Platinax Internet business forums |
SearchNews Archives:
Monthly ArchivesRecent Entries
For comprehensive internet |
|||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
All content © Copyright 2004 Brian Turner. All rights reserved. |