Another Windows/IE Exploit
- Published December 28th, 2005 in Upfront News
Here’s a fresh exploit for your Windows system. Just open a WMF image with Internet Explorer 6 and you’ll have a spyware installed on your machine. This happens to a fully patched Windows XP so don’t go run installing the updates to test it — it’s worthless (but you should have your system updated, nevertheless)
First emergency measure: drop Internet Explorer
Second measure: drop Windows :-)
P.S. - Whoever uses Internet Explorer deserves this and all exploits in the world. Read my lips: GET FIREFOX!
Update: It also affects Firefox prior to 1.0.4 since it uses Windows Picture and Fax Viewer to view the WMF file. But, at least, it prompts the user if he wants to open the file. Internet Explorer simply opens the file straight away.




[…] Mais informações: New exploit blows by fully patched Windows XP systems (via Personal Bytes) […]
[…] After writing this post where I cite another Windows/IE exploit, I remembered to check my blog statistics. […]