New and Used Car Talk Reviews Hot Cars Comparison Automotive Community

The Largest Car Forum in the Philippines

Page 1 of 2 12 LastLast
Results 1 to 10 of 16
  1. Join Date
    Sep 2003
    Posts
    25,068
    #1
    Millions warned not to use Internet Explorer after Chinese fraudsters use security flaw to hijack computers

    More than two million computers worldwide have been infected because of a major security flaw in Microsoft's Internet Explorer web browser, the software giant admitted today.
    Security experts urged people to switch to rival browsers such as Firefox, Opera or Safari, until the bug has been fixed.
    The problem, first revealed last week, allows criminals to take over computers and steal passwords if the user visits an infected website.

    As many as 10,000 sites have already been compromised to take advantage of the flaw, according to anti-virus software producer Trend Micro.

    So far the websites, which are mostly Chinese, have been used to steal computer game passwords which can be sold on the black market.
    Hackers can secure up to £9,000 for these passwords from fanatical gamers. But Trend Micro security researcher Paul Ferguson confirmed there were major concerns that the problem could be exploited by 'more financially motivated criminals for more serious mayhem'.
    John Curran, head of Microsoft's Windows commercial business group in the UK, said the company was 'working around the clock' to fix the problem.
    'What we have seen in terms of infection is this is 0.2 per cent of Internet Explorer users,' he said.
    'Obviously when you are talking about a customer base of over one billion people, any amount of vulnerability is too much and any type of infection is going to see a large number of people affected by it.'
    This equates to more than two million infected machines - although Mr Curran said the flaw was primarily being exploited in China.

    Microsoft said it had so far only found attacks against version 7 of Internet Explorer, the world's most popular web browser, but warned that other versions were 'potentially vulnerable'.

    In a security update issued yesterday, the computer giant said: 'We are actively investigating the vulnerability that these attacks attempt to exploit.

    'We will continue to monitor the threat environment and update this advisory if this situation changes.'

    Microsoft may fix the problem in its regular monthly security update or issue an emergency software patch.

    PC Pro magazine's security editor, Darien Graham-Smith, said hackers were always on the look out for new ways to access penetrate computers.

    'The message needs to get out that this malicious code can be planted on any web site, so simple careful browsing isn't enough.

    'Every browser is susceptible to vulnerabilities from time to time. It's fine to say 'don't use Internet Explorer' for now, but other browsers may well find themselves in a similar situation,' he said.

    According to the Microsoft warning, an attacker could host a specially crafted website that is designed to exploit the flaw through Internet Explorer and then convince a user to view the Web site.

    The attacker could also take advantage of compromised websites and sites that accept or host user-provided content or advertisements.

    These could contain specially crafted content that could exploit the flaw. In all cases, however, an attacker would have no way to force users to visit these websites.

    Instead, the fraudster would have to convince users to visit the site, typically by getting them to click a link in an e-mail message or in an Instant Messenger message that takes users to the attacker's site.

    It could also be possible to display specially crafted web content by using banner advertisements or by using other methods to deliver web content to affected systems.

    The flaw requires that a user is logged on and reading e-mail messages or is visiting websites for any malicious action to occur.

    Therefore, any systems where e-mail messages are read or where Internet Explorer is used frequently, such as workstations or terminal servers, are at the most risk from this vulnerability.
    http://www.dailymail.co.uk/news/arti....html?ITO=1490
    Last edited by Monseratto; December 16th, 2008 at 11:01 PM.

  2. Join Date
    Jan 2006
    Posts
    12,347
    #2
    No problems here. Firefox/Safari user......

  3. Join Date
    Oct 2002
    Posts
    29,354
    #3
    This problem with MS Internet Explorer is not new. Ever since they first released it, it has been full of problems and exploits.

  4. Join Date
    Aug 2004
    Posts
    22,704
    #4
    Yawn. What's new? Who actually uses IE? (still a lot of people apparently). It's the biggest piece of s*** software out there. Full of bugs, full of exploits...

    Ang pagbalik ng comeback...

  5. Join Date
    Oct 2008
    Posts
    944
    #5
    Quote Originally Posted by niky View Post
    Yawn. What's new? Who actually uses IE? (still a lot of people apparently). It's the biggest piece of s*** software out there. Full of bugs, full of exploits...
    hindi lang naman yung browser.. yung buong line up ng programs na mismo na windows may gawa lagi on target! buti pa linux "kahit papaano" mas safe at onti tumitira hehehe

  6. Join Date
    Dec 2005
    Posts
    39,162
    #6

    I seldom use MSIE.....

    7101:hooray:

  7. Join Date
    Oct 2008
    Posts
    1,958
    #7
    Quote Originally Posted by Jun aka Pekto View Post
    No problems here. Firefox/Safari user......
    +1 but i dread the thought that there will come a time that this too will become the object of hate of some hackers?

  8. Join Date
    Jan 2006
    Posts
    12,347
    #8
    Quote Originally Posted by ab_initio View Post
    +1 but i dread the thought that there will come a time that this too will become the object of hate of some hackers?
    I don't just use a diverse set of browsers, but different platforms as well....

    Windows, OSX, plus various flavors of Linux (mostly Live-cd's or thumbdrive-based). They want to hack them all, be my guest.

  9. Join Date
    Jun 2006
    Posts
    3,305
    #9
    wahhhh! Download kagad ako ng Opera....napansin ko na 10X faster na ngayon ang pagload ng tsikot and ibang websites gamit ang Opera. Bilis

  10. Join Date
    Jun 2004
    Posts
    3,475
    #10
    hate IE, kaya firefox user ako eh.

Page 1 of 2 12 LastLast
Internet Explorer security alert: Microsoft says all users at risk