Monday, November 21, 2005 11:34 AM
bradley
Yes the sky is falling
Incidents.org reports a “0-day” for Internet Explorer and while one should always use caution these days when surfing I think we're not fixing the real problem here. This issue along with many others can be mitigated against if we run any software program more securely.
The issues is javascripting that can leave the attacker in the “rights of the user”. Don't run as admin or tighten up your browser ...which everyone should do...
Run IE in high security or if you are surfing on unknown places use 'drop by rights', but let's stop yelling the sky is falling and instead, lets fix the real problem. We're trusting all of our browsers too much and our workstations that run as admin are not protected enough. Firewalls are not enough here.
Update: Read Dana's blog and reports are on Mozilla browsers it's a Denial of Service. I'm going back to waxed string and paper cups.
Filed under: Security, Rants