![]() |
![]() |
|
April 13, 2005Get ready for the next wave of malwareYesterday when Microsoft released MS05-20 which addresses an IE DHTML object memory corruption vulnerability (CAN-2005-0553) I groaned at the thought of the attack vector that this will provide. Only a few hours later, there was already a proof-of-concept exploit released which is now floating around in the public. It should only be a few days now before we start to see that code turned into something more hostile and malicious. Result? Get that patching done NOW! Now, if you are still not heeding my call to run as a non-admin, perhaps this snippet from the advisory will put you in a better frame of mind in WHY its so important to reduce your own privileges: If a user is logged on with administrative user rights, an attacker who successfully exploited any of these vulnerabilities could take complete control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights. (Boldness added for dramatic effect) Get the point? Good. So start running as a "Normal Computer User" today. Posted by SilverStr at April 13, 2005 08:03 AM | TrackBackComments
Of course, the "don't use IE" suggestion would apply here as well. Just out of interest, does this affect w2k3 as well? Guess IE had this coming though, firefox has had a couple of exploits lately, it was IEs turn :) Posted by: Arcterex at April 18, 2005 02:50 PM |
![]() ![]()
My 5 Favorite Books
Writing Secure Code
Secure Programming Cookbook Security Engineering Secure Coding Principles & Practice Inside the Security Mind ![]()
My 5 Favorite Papers
Smashing the Stack
Penetration Studies Covert Channel Analysis of Trusted Systems DoD Trusted Computer System Evaluation Criteria NSA Security Recommendation Guides ![]()
Archives
December 2005
November 2005 October 2005 September 2005 August 2005 July 2005 June 2005 May 2005 April 2005 March 2005 February 2005 January 2005 December 2004 November 2004 October 2004 September 2004 August 2004 July 2004 June 2004 May 2004 April 2004 March 2004 February 2004 January 2004 December 2003 November 2003 October 2003 September 2003 August 2003 July 2003 June 2003 May 2003 April 2003 March 2003 February 2003 January 2003 December 2002 November 2002 October 2002 September 2002 August 2002 July 2002 ![]() |
|