MS Finds Security Flaw In Google Chrome Frame
Christmas Shopping writes with this excerpt from Kaspersky Labs' threatpost: "Back in September, when Google launched the Google Chome Frame plug-in for Internet Explorer users, Microsoft immediately warned that the move would increase the attack surface and make IE users less secure. Now comes word that a security researcher in the Microsoft Vulnerability Research (MSVR) has discovered a 'high risk' security vulnerability that could allow an attacker to bypass cross-origin protections."
"Google has hurried out a patch," he adds.
Not a good day for google...first a OS that can only run web apps...completely rejected by the community...& now this...
In linux they push patches all the time, but a company (like the one I work for) can still screen and test them before they roll out. They can also push it out faster if its a critical bug, and not have to wait for the vendor first.
I had nearly the same reaction. Microsoft does not appear to be in the "finding security flaws" business and to my knowledge, this is the first I have ever heard of Microsoft's researchers finding anything. Seems to me Microsoft depends on its customers, competitors and 'haters' to find security flaws.
So Microsoft found a security problem in another company's software? Damn... maybe 2012 *is* real! The end is nigh!
Scientia est Potentia
that MS cannot find bugs in their products if they spend all the time looking for vulnerabilities in competitors products.