IDNetters Forums

Technical News & Discussion => Windows News & Discussion => Topic started by: somanyholes on Jul 14, 2009, 09:05:50

Title: yet more IE bugs
Post by: somanyholes on Jul 14, 2009, 09:05:50
http://isc.sans.org/diary.html?storyid=6778

and

http://blog.security4all.be/2009/07/active-exploitation-of-office-web.html

this one has been known for 1+ year by microsoft as can be seen http://www.liquidmatrix.org/blog/2009/07/12/microsoft-knew-about-ie-bug-for-a-year/
Title: Re: yet more IE bugs
Post by: Simon on Jul 14, 2009, 11:07:51
:sigh:
Title: Re: yet more IE bugs
Post by: Rik on Jul 14, 2009, 11:09:54
I'm going to buy an abacus.
Title: Re: yet more IE bugs
Post by: somanyholes on Jul 14, 2009, 11:14:33
just to make you happier looks like ev ssl has got owned as well http://www.darkreading.com/security/app-security/showArticle.jhtml;jsessionid=2U15XCAWKUKKEQSNDLOSKHSCJUNN2JVN?articleID=218500176

crazy week. Normally is though with the hacker cons approaching though.
Title: Re: yet more IE bugs
Post by: Rik on Jul 14, 2009, 11:16:38
Thanks, So, I wonder how much longer it will be reasonably safe to use the 'net? I can foresee banking, for example, moving back to private networks to minimise the risks.
Title: Re: yet more IE bugs
Post by: somanyholes on Jul 14, 2009, 11:21:07
the sooner the credit card with the secureid on the front comes out the better.
Title: Re: yet more IE bugs
Post by: Rik on Jul 14, 2009, 11:25:42
How long do you think it would survive uncracked?
Title: Re: yet more IE bugs
Post by: somanyholes on Jul 14, 2009, 11:49:40
i think a long time tbh. Secureid/rsa is solid as long as it has been implemented properly and the standards have been adhered to.
Title: Re: yet more IE bugs
Post by: Rik on Jul 14, 2009, 11:56:09
Let's hope you're right, So, the present system seems like a leaky sieve. :(