Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

IE Flaw Exploited (Internet Explorer has become an even bigger security risk)
PCWORLD ^

Posted on 01/11/2005 3:19:05 AM PST by Happy2BMe

E Flaw Exploited

Security firm identifies exploit technique for known browser hole.

Matthew Broersma, Techworld.com Friday, January 07, 2005

Internet Explorer has become an even bigger security risk--even under Windows XP SP2--with the publication of a new and extensive exploit.

Advertisement

Security researchers have warned that the exploit, which takes advantage of known loopholes in SP2, could allow an attacker to run script code on a user's system via a specially crafted Web page.

Known Hole

The holes involved have been known publicly for more than two months, but previous exploit techniques required the user to take actions such as dragging an image from one part of a Web page to another. The new exploit--a demonstration of which has been published by Danish security firm Secunia--is fully automated, requiring the user only to visit a Web page in Explorer. Other browsers and operating systems aren't affected.

"There now is a 'reliable' working exploit that can compromise an SP2 system by just visiting a Web page," says Secunia chief technology officer Thomas Kristensen. Secunia has raised its warning level to its highest, "extremely critical."

Security group Greyhats warned of the new type of exploit in an advisory in late December. Secunia then upgraded its advisory to "extremely critical" and published a demonstration based on a proof-of-concept by a researcher known as ShredderSub7. US-CERT, the U.S. computer security alert organization, has also published an advisory on the issue.

Issues Identified

Microsoft has warned users to turn off IE's 'Drag and drop or copy and paste files' option as a partial solution. The danger can also be lessened by setting security levels to high for the 'Internet' zone or, as several security firms pointed out, using another browser.

The exploit is the first major weakness in SP2 to have surfaced. Microsoft is promoting SP2, released last summer, as a solution to many of Windows' worst security problems.

Researchers have identified three separate but related issues in IE: a bug in the validation of certain drag-and-drop events, and zone restriction errors with embedded HTML Help ActiveX controls. The first problem can be avoided by disabling the 'Drag and drop or copy and paste files' option, but the new exploit doesn't rely on this particular bug, researchers said.

The HTML Help control exploit bypasses one of SP2's key features, the 'Local Machine' zone lock down, designed to make it far more difficult for attackers to execute script on a local system.


TOPICS: Extended News
KEYWORDS: browser; computersecurity; exploit; getamac; ie; internet; internetexploiter; le; lowqualitycrap; microsoft; patch; patchno8012391; security; securityflaw; trojan; virus; windows; worm
Navigation: use the links below to view more comments.
first previous 1-2021-4041-52 last
To: backhoe

ping


41 posted on 01/11/2005 10:01:42 AM PST by cilbupeR_eerF
[ Post Reply | Private Reply | To 9 | View Replies]

To: B4Ranch

aHHHHHHHHHHHHH. . . .

BUT NOT BITCHING about Microslop

would take away the only semblence of recourse left.

Besides . . . what a release--what pseudo-fun.

Oh, I know . . . sigh . . .

"In ALL things give thanks for this is the will of God in Christ Jesus concerning you."

Still working on that one.

THX.


42 posted on 01/11/2005 10:07:54 AM PST by Quix (HAVING A FORM of GODLINESS but DENYING IT'S POWER. 2 TIM 3:5)
[ Post Reply | Private Reply | To 40 | View Replies]

To: backhoe

I don't run XP so won't ever have a chance to test it and comment on it, but I wonder about any false positives (something all can have).


43 posted on 01/11/2005 10:52:43 AM PST by JoJo Gunn (More than two lawyers in any Country constitutes a terrorist organization. ©)
[ Post Reply | Private Reply | To 9 | View Replies]

To: MeekOneGOP

That's right, Meek. You can put a web address into the address bar of Windows explorer and access the web. They can also access you through that same door.

I can't remember what site it is, something similar to GRC, where you can do security tests, and one javascript will pop open all your CD drawers. That's how tied IE is to the OS.


44 posted on 01/11/2005 10:55:51 AM PST by JoJo Gunn (More than two lawyers in any Country constitutes a terrorist organization. ©)
[ Post Reply | Private Reply | To 34 | View Replies]

To: MeekOneGOP; All

Check this out. Some sewer-ware outfit was using browser hijackers, popups, and opening CD drawers to scare the gullible into buying their "Spywiper"!

http://tired-of-spam.home.comcast.net/spywiper.html

If a program has "spy" or "spyware" or "ad" in the name, you can't be sure it's a safe program anymore. Be wary of ANY new spyware remover. Always ask around and/or check computer forums for the tried and true. Don't try anything just because it comes up in a search.


45 posted on 01/11/2005 11:11:48 AM PST by JoJo Gunn (More than two lawyers in any Country constitutes a terrorist organization. ©)
[ Post Reply | Private Reply | To 34 | View Replies]

To: Happy2BMe
IE Flaw Exploited

And we're 30 days away from "Patch Tuesday". Why anyone uses IE at all is beyond me.

46 posted on 01/11/2005 11:22:54 AM PST by Space Wrangler
[ Post Reply | Private Reply | To 1 | View Replies]

To: JoJo Gunn
Thanks. :^)

The guys that do this stuff are Internet Terrorists.


47 posted on 01/11/2005 12:14:27 PM PST by MeekOneGOP (There is only one GOOD 'RAT: one that has been voted OUT of POWER !! Straight ticket GOP!)
[ Post Reply | Private Reply | To 45 | View Replies]

To: MeekOneGOP
You got that right. Panties on the heads of the lot of them.

And a few fingers....ahem....hacked off.

48 posted on 01/11/2005 12:20:37 PM PST by JoJo Gunn (More than two lawyers in any Country constitutes a terrorist organization. ©)
[ Post Reply | Private Reply | To 47 | View Replies]

To: JoJo Gunn
I don't run XP so won't ever have a chance to test it and comment on it, but I wonder about any false positives (something all can have).

I have a main & a fallback PC at home, both running Win2000pro, one DSL and one dialup, and MSantispyware found one file one each, with different names. None of the other stuff I use, including a few onlines scans, said "boo!" Of course, false positives do happen.

49 posted on 01/11/2005 12:43:56 PM PST by backhoe (-30-)
[ Post Reply | Private Reply | To 43 | View Replies]

To: Happy2BMe

I thought the fix was supposed to be out today. Apparently not. I went to the update site (I am running IE 6 and Win XP but use Netscape) and no updates were listed for my computer.


50 posted on 01/11/2005 12:47:01 PM PST by hsmomx3 (GO STEELERS!!!!!!!!!!!!!!!!)
[ Post Reply | Private Reply | To 1 | View Replies]

To: hsmomx3

What if they can't fix it? What then?


51 posted on 01/11/2005 1:06:43 PM PST by Happy2BMe ("Islam fears democracy worse than anything- If the imams can't control it - they will kill it.)
[ Post Reply | Private Reply | To 50 | View Replies]

To: Beelzebubba
The SP2 patch was supposed to fix security patches in IE - first and foremost.

SP3 will surely do the trick.

52 posted on 01/11/2005 1:14:07 PM PST by Happy2BMe ("Islam fears democracy worse than anything- If the imams can't control it - they will kill it.)
[ Post Reply | Private Reply | To 36 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-52 last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson