PDA

View Full Version : Germany urges public to stop using Internet Explorer



Dino Velvet
09-19-2012, 03:30 AM
http://news.yahoo.com/microsoft-warns-internet-explorer-security-flaw-031807045--sector.html

Germany urges public to stop using Internet Explorer

By Harro Ten Wolde and Jim Finkle | Reuters – 2 hrs 2 mins ago

FRANKFURT/BOSTON (Reuters) - The German government urged the public on Tuesday to temporarily stop using Microsoft Corp's Internet Explorer following discovery of a yet-to-be repaired bug in the Web browser that the software maker said makes PCs vulnerable hacker attacks.
It issued the warning as a researcher said he found evidence that suggests the hackers who exploited the flaw were seeking to attack defense contractors.
Microsoft said on Monday that attackers can exploit the bug in its Internet Explorer, used on hundreds of millions of computers, to infect the PC of somebody who visits a malicious website and then take control of the victim's computer.
The German government's Federal Office for Information Security, or BSI, said it was aware of targeted attacks and that all that was needed was to lure Web surfers to a website where hackers had planted malicious software that exploited the bug.
"A fast spreading of the code has to be feared," the German government said in its statement.
BSI advised all users of Internet Explorer to use an alternative browser until the manufacturer has released a security update.
Officials with Microsoft did not respond to a request to comment on the move by the German government, although the company downplayed the impact of the flaw in a written statement.
"There have been an extremely limited number of attacks," said company spokeswoman Yunsun Wee. "The vast majority of Internet Explorer users have not been impacted."
The company said it planned to release software to protect PCs from attack within the next few days. Customers must manually install the code by visiting Microsoft's website and clicking on a link.
Microsoft did not say how long it will take to release a full update to Internet Explorer, which will automatically be loaded onto the machines of most customers. Several security researchers have said they expect the update within a week.
'NITRO' LINK
The vulnerability in Internet Explorer was identified on Friday after the PC of a security researcher from Luxembourg was infected while analyzing a computer server that was used last year to launch a cyber industrial espionage campaign on at least 48 chemical and defense companies.
The victims of the so-called "Nitro" attacks included Fortune 100 corporations that develop compounds and advanced materials, according to security software maker Symantec Corp, which disclosed them in October 2011.
Network security firm AlienVault said on Tuesday it has discovered three other servers that host malicious websites that exploit the newly found Internet Explorer vulnerability.
Jaime Blasco, manager of AlienVault Labs, said he found evidence suggesting they targeted defense contractors. As an example, he said he found a related virus on a site that provides news on India's defense sector.
"It seems that these guys are behind big targets," he said.
Internet Explorer was the world's second-most widely used browser last month, with about 33 percent market share, according to StatCounter. It was close behind Chrome, which had 34 percent of the market.
Until the new software is available from Microsoft, the company advises customers to use a free security tool, which is known as the Enhanced Mitigation Experience Toolkit, or EMET, to mitigate the risk of attacks. It is available through an advisory on Microsoft's website: http://blogs.technet.com/b/msrc/
The EMET software must be downloaded, installed and then manually configured to protect computers from the newly discovered threat, according to the posting from Microsoft. The company also advised customers to adjust several Windows security settings to thwart potential attackers, but cautioned that doing so might impact the PC's usability.
Some security experts have said it would be too cumbersome for many PC users to implement the measures suggested by Microsoft. Instead they advised Windows users to temporarily switch from Internet Explorer to rival browsers such as Google Inc's Chrome, Mozilla's Firefox or Opera Software ASA's Opera.
(Reporting by Harro Ten Wolde in Frankfurt and Jim Finkle in Boston; Additional by Nicola Leske in New York; Editing by Tim Dobbyn and Andre Grenon)


http://l2.yimg.com/bt/api/res/1.2/MMU4zUKasFjUnSR338w_Sw--/YXBwaWQ9eW5ld3M7Zmk9aW5zZXQ7aD0zMDI7cT04NTt3PTQ1MA--/http://media.zenfs.com/en_us/News/Reuters/2012-09-18T031807Z_3_CBRE88G1K9H00_RTROPTP_2_MICROSOFT.JPG

danthepoetman
09-19-2012, 03:52 AM
I never use Explore! It's so slow and full of bugs! Firefox, Google chrome, Opera are indeed so much better.

Dino Velvet
09-19-2012, 03:54 AM
I use Firefox but am thinking about switching to Chrome.

Ryz
09-19-2012, 03:57 AM
Google Chrome !

danthepoetman
09-19-2012, 04:11 AM
Agree with both of you: Chrome is the best. It’s the fastest. Never had any problems with it. Firefox is pretty close, though. Opera, for older computers…

GrimFusion
09-19-2012, 10:17 PM
Chrome isn't bad on older computers anyway. As far as I can tell from experience, Chrome still starts up faster and preforms better than Firefox even on older hardware. Odd, considering Chrome uses more system RAM on average and creates a new and separate task for every running tab.

I prefer to use SRware Iron (a version of Chrome for privacy enthusiasts) for general web surfing and Maxathon for web development. Both browsers are more HTML5 and CSS3 standards compliant than Firefox and Internet Explorer, and Maxathon is the most standard compliant browser on the market... at the moment.

Willie Escalade
09-20-2012, 02:00 AM
Firefox here. The last time I used IE was when I reinstalled my OS after purchasing a new hard drive. I had to download the newest version of Firefox!

kukm4
09-20-2012, 02:08 AM
Did they just find out about this now? IE. has has security issues since...ever.
Still using Firefox, Chrome is ok but still need No-script support for it. There is one similar
but not as good. I tend to get more pop-up windows with chrome over Firefox.

danthepoetman
09-20-2012, 02:11 AM
Grim, I believe every word you said, although I must say I didn’t understand half of them. :)

GrimFusion
09-20-2012, 03:05 AM
Did they just find out about this now? IE. has has security issues since...ever.
Still using Firefox, Chrome is ok but still need No-script support for it. There is one similar
but not as good. I tend to get more pop-up windows with chrome over Firefox.

That whole "Micro$oft is buggy. IE has the worst browser security ever" bandwagon broke down a few years ago. Time to hop off the wreckage.

kukm4
09-20-2012, 09:38 PM
http://www.computerworld.com/s/article/9231478/Microsoft_Patch_for_critical_IE_zero_day_bug_comin g_Friday?taxonomyId=85

"Microsoft will release the emergency update at approximately 1 p.m. ET Friday (9/21) via the Microsoft Update and Windows Update services, as well as through WSUS (Windows Server Update Services), the de facto corporate patch deployment tool."

Make sure you Update tomorrow and tell friends and relatives to do the same.

talldudeil
09-21-2012, 12:54 AM
Seamonkey for html editing and firefox for normal browsing