New deadly phishing bug in IE7
Security researcher Michal Zalewski said he has discovered a relatively new security vulnerability in Internet Explorer 7.
Security researcher Michal Zalewski said he has discovered a relatively new security vulnerability in Internet Explorer 7.
The cause of the above security hole is an error in the way the browser handles the function ' document.open () ' when receiving a command that opens a new window. This error can be exploited to fake the website address displayed on the browser's Address bar.
This is an extremely dangerous form of attack by ordinary users, which is very difficult to detect. Especially in case hackers fake phishing website addresses identical to legitimate website addresses plus an almost identical interface.
However, security firm Secunia only ranked this error on a dangerous level 2/5 - equivalent to a level of danger below average.
Michal Zalewski confirmed that the version of Internet Explorer 7 running on the Windows XP SP2 operating system, which was fully installed, still had the above security flaws. Other versions may also make mistakes.
Users are advised to be careful when accessing unreliable websites.
Hoang Dung
- Phishing website grows 166% / month
- Damage caused by phishing established a new record
- The number of phishing sites set new records
- PayPal and eBay tops the list
- The website exploded phishing on the Web
- Vishing - phishing through VoIP
- Skype was again disguised as a fraud
- Phishing threatens VoIP
- The unsafe browser is removed from Paypal
- Microsoft: Phishing is not very successful
What is the Snapdragon SiP chip? How to create a yellow circle around the mouse cursor on Windows Edit the Boot.ini file in Windows XP 3 ways to restart the remote computer via the Internet Vietnam computer market: Looking back a year How to restore deleted applications on Android How to increase the capacity of C drive on Windows 10, 8, 7 ... 8 security features of Windows operating system