Wednesday, May 23, 2012
Linux, Security, Rants and Raves

Categories


 

June 2007
S M T W T F S
« May   Jul »
 12
3456789
10111213141516
17181920212223
24252627282930

Archives


Canadian security firms size up browser bugs

June 12th, 2007 by LinuxChick

Vulnerabilities in IE, Firefox a wake-up call, exec says

Four recently discovered vulnerabilities in two rival Internet browsers should serve as a “wake-up call” to Web surfers, Canadian security experts say.

Last week, Polish computer security expert Michal Zalewski disclosed two flaws he found in Mozilla’s open-source Firefox browser and two defects in Microsoft’s Internet Explorer (IE).

According to Zalewski’s posting on the Full-Disclosure mailing list, the most critical vulnerability resides in IE.

The flaw allows hackers to steal sign-on cookies from online banks and other trusted sites as well as “hijack” a victim’s machine, said Zalewski, who has achieved fame as a white-hat hacker.

He said malicious hackers can take advantage of a “brief window of opportunity” when IE navigates from a sensitive Web page to an unrelated site. During this time, an attacker can execute JavaScript actions that can compromise a victim’s machine.

Read More.. It Business

~LC

Posted in News, Security | No Comments »

Leave a Comment

Please note: Comment moderation is enabled and may delay your comment. There is no need to resubmit your comment.