Most Popular
| Top Stories | Commented | Featured |
ATI Radeon HD 5570 Review featured
AMD's six-core Thuban to have feature like Turbo Boost?
Google to launch Twitter-like service for Gmail
Intel unveils Itanium 9300 series enterprise processors
Netflix to roll out 1080p streaming later this year
China closes major hacker ring, arrests three members
Intel Core i5-based MacBook Pros coming soon?
Sharp and Samsung end LCD patent suits with cross-licensing agreement
TS Community
| User Gallery | Recent Discussion |
cool linux by mk_once | iPhone 3G S sample #2 by Rick |
5970. by Tehoste | My 2 PC by filimarcus |
IT Security
Microsoft releases critical Internet Explorer patch
Microsoft has just issued an out-of-band security update to fix a critical vulnerability in its Internet Explorer web browser that is being actively exploited. The flaw, which affects all versions from IE 5 to IE 8 Beta 2, lies in the browser’s data binding function and is being actively exploited since last week through specially-crafted web pages.
Although attacks have reportedly been limited, security experts warned that if carried out successfully, it could give an attacker the same user rights as the local user and ultimately the ability gain access to sensitive data. Microsoft is urging users of IE to download and apply the patch as soon as possible via the Windows Update mechanism. This marks the second time in only two months that the company has released a security patch outside of its monthly cycle, following one in October which addressed a dangerous remote procedure call (RPC) error that could result in remote code execution.
Although attacks have reportedly been limited, security experts warned that if carried out successfully, it could give an attacker the same user rights as the local user and ultimately the ability gain access to sensitive data. Microsoft is urging users of IE to download and apply the patch as soon as possible via the Windows Update mechanism. This marks the second time in only two months that the company has released a security patch outside of its monthly cycle, following one in October which addressed a dangerous remote procedure call (RPC) error that could result in remote code execution.
Related Stories
TechSpot RSS



