Microsoft Says Upgrade To IE8, Even Though It's Vulnerable
Barence writes "Microsoft has issued a statement urging people to upgrade their browser to IE8, after the zero-day exploit that was used to attack companies such as Google went public. According to Microsoft's security advisory: 'the vulnerability exists as an invalid pointer reference within Internet Explorer. It is possible under certain conditions for the invalid pointer to be accessed after an object is deleted. In a specially-crafted attack, in attempting to access a freed object, Internet Explorer can be caused to allow remote code execution.' But, although IE6 has been the source of the attacks until now, Microsoft's advisory admits that both IE7 and IE8 are vulnerable to the same flaw, even on Windows 7."
So ofcourse, microsoft whant more peoples to become drone that attack google.
I an upgrade it's needed, let's upgrade to Firefox and trick recalcitrant IE users using a some theme/persona.
Firefox without any plugins is a PITA. People who are using IE6 now are average users, most of them don't even know what a plugin is, so they will have a hard time finding all the plugins like AdBlock and customizing Firefox to make it usable, so upgrading to Opera would be a much better solution, Opera comes configured properly out of the box without requiring any additional plugins and just by clicking F12 you get a menu where you can turn on/off Java, Javascript, Plugins and Cookies. It's simple, fast and secure, give it a try, you won't regret it.
Sandboxing & virtualization of a sick browser is not a panacea. If the sandboxed application is compromised, it could still be controlled in its own domain and compromise cookies, passwords and anything else that it obtainable in its virtual space. It could still be used for malicious purposes, purposes that can could result in a knock on the door from the law.
A hale and open sourced browser is the only safe way to go. Screw IE, any version.
Was it not the browser that would install keyloggers and dialers through the press of the [Enter] key as it would default on installation of any "signed" ActiveX, not matter how fucked up it was? Yes! Did these people have any idea of what was happening on the Internet? Yes! Fuckit, the said, system-browser integration is not debatable; Microsoft had their fun killing Netscape, now we have our fun watching them trying to fix the mess. (They wont).
driven out by the Lite is straining election to the both believed that of FreeBSD Usenet the most. LLok at reaper Nor do the
Ignoring the fact that they've come along way in both securing the browser and supporting standards shows nothing they do would make you happy.
This guy is talking about Microsoft ?
Somebody give me a clue, please.
came as a complkete Software lawyers stagnant. As Linux rooting corpse