GoRiLL@ZSouth.com
September 07, 2010, 04:09:47 PM*
Welcome, Guest. Please login or register.

Login with username, password and session length
News: Are You Ready For This?
Advanced search
Pages: [1]
Print
Author Topic: Microsoft: Upgrade to IE8, even though it's vulnerable too!  (Read 544 times)
0 Members and 1 Guest are viewing this topic.
[GS]-BeNt-
GS Fürer
Moderator
[GS]Xtreme
*

Karma: +152/-14
Offline Offline

Gender: Male
United States United States

Posts: 3,539



This Community Roxz!

qazme
WWW
« on: January 18, 2010, 09:20:14 AM »

Ok lets see how many of you guys are behind the times. If you use ANY version of Internet Explorer from Microsoft, you know that browser with the big blue E on your  desktop, Microsoft wants you to update to IE8 even though it's still vulnerable. My suggestion however is much more logical. This statement was issue by Microsoft after it became publicly known that there was a zero day attack aimed at Google.

Quote from: Microsoft's security advisory
...the vulnerability exists as an invalid pointer reference within Internet Explorer. It is possible under certain conditions for the invalid pointer to be accessed after an object is deleted. In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution.


Now another check on how far people really are across the web on this one, is that the flaw was found and executed on IE6 which is still the predominate version of IE used across the internet. IE6 sucks by the way for more reason than I feel like talking about here, especially to web designers. So my mission to swap as many people and companies over to IE8 has been ongoing for well over a couple months before this was an issue. BUT what Microsoft and several security experts also let everyone know is that IE7 and IE8 are also vulnerable to this attack as well. Way to go MS.

Quote from: Microsoft
To help protect our customers, we recommend that all customers immediately upgrade to Internet Explorer 8. Customers should also consider applying the workarounds and mitigations provided in our Security Advisory such as putting Internet zone security settings to High


Other measures recommended by Microsoft include running the browser in Protected Mode and ensuring users aren't running with administrator privileges. But who does this? Guess what, I don't have to do this with Chrome, Firefox, or safari........

Microsoft says it's considering issuing a fix outside of the regular Patch Tuesday cycle to address the issue. How gracious of them. My suggestion is have your own patch Tuesday and fix the problem by yourself by swapping to the ever vigilant Firefox. Chrome is also very strong and Safari is just as fast as both of them. Considering the time we live in now, who still uses IE for anything but Windows updates?? Get with the times!!
Logged

Give A Man A Fish, He Will Eat For a Day. Give A Man Religion and He Will Starve To Death While Praying For a Fish!!

[GS]Dead_Verse
L337
*

Karma: +12/-8
Offline Offline

Gender: Male
Canada Canada

Posts: 1,390



GoRiLL@Z - Canada


« Reply #1 on: April 08, 2010, 02:38:43 PM »

stupid fucking afghans.
Logged

Tags:
Pages: [1]
Print
Jump to:  

TinyPortal v1.0 beta 4 © Bloc
Steam Engine v1 by -BeNt- Powered by SMF 1.1.10 | SMF © 2006-2009, Simple Machines LLC MySQL | PHP | XHTML | CSS

Powered by Pyxis Technologies
Page created in 0.162 seconds with 41 queries.

Time for a Change!