<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>I Learnt Today... &#187; Security Flaws</title>
	<atom:link href="http://www.ilearnttoday.com/category/information-technology/computer-security/security-flaws/feed" rel="self" type="application/rss+xml" />
	<link>http://www.ilearnttoday.com</link>
	<description>This is where I share what I learn day by day...</description>
	<lastBuildDate>Tue, 17 Jan 2012 12:44:19 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Internet Explorer Major Security Flaw!</title>
		<link>http://www.ilearnttoday.com/internet-explorer-security-flaw</link>
		<comments>http://www.ilearnttoday.com/internet-explorer-security-flaw#comments</comments>
		<pubDate>Tue, 16 Dec 2008 12:49:55 +0000</pubDate>
		<dc:creator>Menol</dc:creator>
				<category><![CDATA[Computer Security]]></category>
		<category><![CDATA[Information Technology]]></category>
		<category><![CDATA[Menol]]></category>
		<category><![CDATA[Security Flaws]]></category>
		<category><![CDATA[a Cross-Domain Security Model]]></category>
		<category><![CDATA[Andreas Sandblad]]></category>
		<category><![CDATA[Andreas Sandblad from Sweden]]></category>
		<category><![CDATA[attacker]]></category>
		<category><![CDATA[compromise]]></category>
		<category><![CDATA[Cross Domain Security Model]]></category>
		<category><![CDATA[different domains]]></category>
		<category><![CDATA[domain]]></category>
		<category><![CDATA[Fix]]></category>
		<category><![CDATA[IE Security]]></category>
		<category><![CDATA[IE Security Patch]]></category>
		<category><![CDATA[IE Versions]]></category>
		<category><![CDATA[IE vulnerability]]></category>
		<category><![CDATA[Incomplete Security Checking]]></category>
		<category><![CDATA[internet explorer]]></category>
		<category><![CDATA[Internet Explorer Major Security Flaw]]></category>
		<category><![CDATA[internet explorer news]]></category>
		<category><![CDATA[internet explorer problems]]></category>
		<category><![CDATA[internet explorer security]]></category>
		<category><![CDATA[Internet Explorer Security Flaw]]></category>
		<category><![CDATA[internet explorer vulnerability]]></category>
		<category><![CDATA[Major Security Flaw]]></category>
		<category><![CDATA[malicious]]></category>
		<category><![CDATA[malicious code]]></category>
		<category><![CDATA[malicious web site]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[Microsoft product]]></category>
		<category><![CDATA[most widely used Microsoft product]]></category>
		<category><![CDATA[Point of Origin]]></category>
		<category><![CDATA[Red Alert]]></category>
		<category><![CDATA[Security Flaw]]></category>
		<category><![CDATA[The Cross-Domain Security Model]]></category>
		<category><![CDATA[victim]]></category>
		<category><![CDATA[vulnerability]]></category>
		<category><![CDATA[world's most popular web browser]]></category>

		<guid isPermaLink="false">http://ilearnttoday.wordpress.com/?p=174</guid>
		<description><![CDATA[2008-12-16 Internet Explorer, one of the most widely used Microsoft products, Considered as the world&#8217;s most popular web browser has<a href="http://www.ilearnttoday.com/internet-explorer-security-flaw" class="searchmore">Read the Rest...</a><div class="clr"></div>]]></description>
			<content:encoded><![CDATA[<p><span style="color:silver;">2008-12-16</span></p>
<p><em>Internet Explorer</em>, one of the most widely used Microsoft products, Considered as the world&#8217;s most popular web browser has received a Red Alert!</p>
<p>The situation was raised when Andreas <span class="mceitemhiddenspellword">Sandblad</span> from Sweden reported a vulnerability to Microsoft.</p>
<p><strong>The vulnerability:</strong></p>
<p>Point of Origin: The Cross-Domain Security Model</p>
<p>Fix: Not Available Yet, Microsoft is still investigating on this</p>
<p><strong>Description:</strong></p>
<p>This Cross-Domain Security model is supposed to keep windows of different domains from sharing information.</p>
<p>An Incomplete Security Checking has caused <span class="mceitemhidden">Internet</span> explorer to allow one web site to potentially access information from another domain loaded into a different Internet Explorer window when using certain dialog boxes.</p>
<p>The vulnerability would allow a malicious web site to load malicious code into the client&#8217;s system. Not only that, through this security hole, an attacker can either execute any executable available in the victim&#8217;s system or perform any action that is entitled or available for the privileges of the victim.</p>
<p>For an example, if the victim is an administrator on the system the attacker can perform critical actions as the attacker now has administrator privileges on the system.</p>
<p><strong>The Spread:</strong></p>
<p>According to Trend Micro, due to this vulnerability, more than <em>10,000</em> web sites have already been compromised to take advantage of the flaw!</p>
<p>Many web sites which are mostly Chinese have been used to steel computer games passwords which have good prices in black market.</p>
<p><strong>Affected Version(s) of IE:</strong></p>
<p>According to Microsoft, so far attacks have been found only for version 7 but they warned that other versions were &#8220;Potentially Unsafe&#8221;</p>
<p><strong>How to Protect Yourself:</strong></p>
<p>The advice given by computer security experts at the moment is to switch to a different web browser till this major security flaw is fixed.</p>
<p style="text-align:justify;"><span style="color:#008000;">Was this post helpful to you? How can I improve? &#8211; </span><span style="color:#008000;">Your comment is highly appreciated!</span></p>
<p><span style="color:#c0c0c0;"><span class="mceitemhiddenspellword"><span style="color:silver;">Cassian</span></span><span style="color:silver;"> <span class="mceitemhiddenspellword">Menol</span> <span class="mceitemhiddenspellword">Razeek</span></span></span></p>
]]></content:encoded>
			<wfw:commentRss>http://www.ilearnttoday.com/internet-explorer-security-flaw/feed</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

