We The People USA

Citizens Dedicated To Preserving Our Constitutional Republic

Major flaw revealed in Internet Explorer; users urged to switch

Tue Dec 16, 2008 11:49AM EST



The major press outlets are abuzz this morning with news of a major new security flaw that affects all versions of Internet Explorer from IE5 to the latest beta of IE8. The attack has serious and far-reaching ramifications -- and they're not just theoretical attacks. In fact, the flaw is already in wide use as a tool to steal online game passwords, with some 10,000 websites infected with the code needed to take advantage of the hole in IE.

Virtually all security experts (as well as myself) are counseling users to switch to any other web browser -- none of the others are affected, including Firefox, Chrome, and Opera -- at least for the time being, though Microsoft has stubbornly said it "cannot recommend people switch due to this one flaw." Microsoft adds that it is working on a fix but has offered no ETA on when that might happen. Meanwhile it offers some suggestions for a temporary patch, including setting your Internet security zone settings to "high" and offering some complicated workarounds. (Some reports state, however, that the fixes do not actually work.)

Expedient patching or switching are essential. Security pros fear that the attack will soon spread beyond the theft of gaming passwords and into more criminal arenas, as the malicious code can be placed on any website and can be adapted to steal any password stored or entered using the browser. It's now down to the issue of time: Will Microsoft repair the problem and distribute a patch quickly enough to head off the tsunami of fraud that's about to hit or will it come too late to do any good?

Meanwhile, I'll reiterate my recommendation: Switch from Internet Explorer as soon as you can. You can always switch back once the threat is eliminated. (To clarify: You don't need to uninstall IE, just don't use it for the time being.)

Links for other browsers to try: Firefox Chrome Safari Opera


http://tech.yahoo.com/blogs/null/111811

Views: 8

Comment

You need to be a member of We The People USA to add comments!

Join We The People USA

Badge

Loading…

Online Magazines

Accuracy In Media
American Spectator
American Thinker
American Conservative
Amer Conservative Daily
The American Prospect
Atlanta Const Journal
The Atlantic Monthly
Boston Review
Blacklisted News
The Bulletin
Canada Free Press
Capitalism Magazine
Chronicles Magazine
City Journal
CNS News
CNIN Truth
Conservative Economist
Consortium News
Commentary Magazine
The Conservative Edge
Conservative Outpost
Corruption Chronicals (JW)
The Corzine Times
CounterPunch
The Daily Caller
Daily Mail UK
Deep Journal
Digital Journal
Dissent Magazine
The Economist
Examiner
Florida Pundit
Foreign Affairs
Foreign Policy
The Freemen Institute
The Gouverneur Times NY
The Guardian UK
The Foundry (Heritage)
Free Market News
FrontPage Magazine
Gateway Pundit
The Guardian UK
The Globalist
Harper's Magazine
Harvard Inter Review
The Hill
Human Events
In These Times
The Land of the Free
Liberty Unbound
Mission America
Mother Jones
Monthly Review
The Nation
National Interest
National Ledger
National Review
New Internationalist
The New American
The New Ledger
New Left Review
New Media Journal
News Hounds
Newstin
The New Republic
News Busters
News Fifty
NewsMax
Newsweek
News Daily
News With Views
Online Journal
Oohja.com
The Palestine Chronicle
Planet Daily
Policy Review
Poligazette
Politics Daily
The Post Chronicle
Pravda
The Progressive
Reality Check
The Real News Network
Reason
Real Clear Markets
Real Clear Politics
Red Pepper
Roll Call
Russia Today
Salon
Slate
Spectator Magazine
Spiked
Telegraph UK
Time
Toward Freedom
Townhall
U.S. News & World Report
Utne Reader
Wall Street Journal Magazine
Washington Examiner
The Washington Independent
Washington Monthly
The Weekly Standard
World Net Daily
World Magazine
World Press Review
World Reports
World Tribune
Vanity Fair

© 2024   Created by WTPUSA.   Powered by

Badges  |  Report an Issue  |  Terms of Service