Members
  • Total Members: 14187
  • Latest: focel
Stats
  • Total Posts: 43305
  • Total Topics: 16434
  • Online Today: 3509
  • Online Ever: 51419
  • (01. January 2010., 10:27:49)









Author Topic: Internet Explorer exploit published online (Symantec - Bloodhound.Exploit.129)  (Read 3049 times)

0 Members and 1 Guest are viewing this topic.

Samker

  • SCF Administrator
  • *****
  • Posts: 7528
  • KARMA: 322
  • Gender: Male
  • Whatever doesn't kill us makes us stronger.
    • SCforum.info - Samker's Computer Forum


An exploit for Internet Explorer was published online yesterday, showing signs of poor reliability. Symantec confirmed that the exploit affects Internet Explorer 6 and 7: http://www.symantec.com/connect/blogs/zero-day-internet-explorer-exploit-published
Experts believe a fully functional version of the exploit will be made available in the coming weeks.

The exploit requires the hacker to lure the victim onto a malicious website or a compromised webpage. Whatever method is used, the attack requires javascript on Internet Explorer. Symantec found the vulnerability in Microsoft Data Access Components, which could allow a Remote Code Execution on a user's system.

Users are cautioned to disable javascript on Internet Explorer, avoid websites they do not trust, and update their anti-virus definitions immediately. Symantec confirms that they have detected the exploit, Bloodhound.Exploit.129, rating the risk a level 1, very low: http://www.symantec.com/security_response/writeup.jsp?docid=2007-032701-5447-99

The affected systems are currently Windows 2000, Windows Server 2003 and Windows XP.

(Neowin)


Samker's Computer Forum - SCforum.info


Fireberg

  • SCF Advanced Member
  • ***
  • Posts: 176
  • KARMA: 22
Internet Explorer users can also upgrade to Internet Explorer version 8. Even so, they will still be vulnerable to some exploits. Firefox or Opera are probably the safest browsers to use.

Thanx

Samker's Computer Forum - SCforum.info


 

With Quick-Reply you can write a post when viewing a topic without loading a new page. You can still use bulletin board code and smileys as you would in a normal post.

Name: Email:
Verification:
Type the letters shown in the picture
Listen to the letters / Request another image
Type the letters shown in the picture:
Second Anti-Bot trap, type or simply copy-paste below (only the red letters):www.scforum.info:

Enter your email address to receive daily email with 'SCforum.info - Samker's Computer Forum' newest content:

Kursevi kodiranja za ucenike u Sarajevu

Terms of Use | Privacy Policy | Advertising