BetaONE will rise again!


Reply
  #1  
Old 10th Jun 08, 10:55 AM
NewsBot's Avatar
NewsBot NewsBot is offline
Senior Member
 
Join Date: Oct 2004
Posts: 31,079
NewsBot will become famous soon enough
Apple's carpet-bomb Safari flaw can wreak havoc on Windows
A researcher has created a proof-of-concept site that graphically demonstrates the risk Windows users face when using Apple's Safari browser. Microsoft's security team already warned that a "blended threat" was so serious that Windows users should curtail their use of Safari until a security patch is available. This blog post from researcher Liu Die Yu makes it clear the warning was by no means overstated.

Clicking on this link with Safari using default settings automatically downloads a booby-trapped file onto a Windows user's desktop with no prompting. The next time the user opens Internet Explorer, the force-fed file automatically causes the notepad.exe application to launch and open a non-existent file. Of course, miscreants could choose far more nefarious code.

When informed that its browser downloads files with no prompting, Apple said it may get around to changing this behavior at some point. In other words, this is no big deal from a security perspective, so let's all move on. This demo suggests otherwise.

View: The full story @ The Register

Read full story...



More...
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Security flaw hits Safari (Windows) only hours after release NewsBot NeoWin News 0 12th Jun 07 02:56 PM
M$ Embeds Windows Live Links in New Vista Builds Alpine BetaONE News 0 17th Aug 06 02:47 PM
Windows Live Messenger Released NewsBot NeoWin News 0 19th Jun 06 09:30 PM
Neowin Talks Security with Microsoft NewsBot NeoWin News 0 7th Feb 05 01:00 AM
Speed up system. greasemonkey Hardware Support 6 6th Nov 01 07:32 PM


All times are GMT +1. The time now is 03:16 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.