Tuesday, June 15, 2004

A bug in fully patched versions of Microsoft's Internet Explorer Invites Phishing Attacks

URL Parsing Bug in IE Invites Phishing Attacks:
"A bug in fully patched versions of Microsoft's Internet Explorer Web browser allows violations of the browser's security zones, with the result that an unknown malicious site could assume the privileges of more trusted zones.

Researchers on several security mailing lists have been discussing the bug since yesterday and appear still to be learning about it. "

http://www.eweek.com/article2/0,1759,1611102,00.asp?kc=ewnws061404dtx1k0000599

No comments: