website stat

Another Windows/IE Exploit

Here’s a fresh exploit for your Windows system. Just open a WMF image with Internet Explorer 6 and you’ll have a spyware installed on your machine. This happens to a fully patched Windows XP so don’t go run installing the updates to test it — it’s worthless (but you should have your system updated, nevertheless)

First emergency measure: drop Internet Explorer
Second measure: drop Windows :-)

P.S. - Whoever uses Internet Explorer deserves this and all exploits in the world. Read my lips: GET FIREFOX!

Update: It also affects Firefox prior to 1.0.4 since it uses Windows Picture and Fax Viewer to view the WMF file. But, at least, it prompts the user if he wants to open the file. Internet Explorer simply opens the file straight away.


2 Responses to “Another Windows/IE Exploit”

  1. lâmpada azul [jcraveiro.com] » Razões para largar o IE, parte 1138
    Published at December 28th, 2005 at 11:19 pm

    […] Mais informações: New exploit blows by fully patched Windows XP systems (via Personal Bytes) […]

  2. Personal Bytes » Blog Archive Come on! Drop Internet Explorer, please! »
    Published at December 29th, 2005 at 2:20 am

    […] After writing this post where I cite another Windows/IE exploit, I remembered to check my blog statistics. […]