Fixing the Internet Explorer Blues

Another day, another IE bug, and how to fix it.

By sjvn  1 comment

Earlier this week Microsoft announced yet another IE (Internet Explorer) bug. This one, Microsoft Security Advisory 977981, is one of the really bad ones that can allow attackers to take your Windows PC over. Yuck!

Microsoft is working on a fix, but there still isn't one, and worse still, there are already several attacks out there that can exploit this IE security hole.

The new hole exploits how Internet Explorer uses certain CSS (Cascading Style Sheet) objects, which is commonly used to determine how a Web page is displayed. It's put into play when you go to a page with contaminated JavaScript. Sound familiar? It probably does, deliberated corrupted JavaScript has been used to compromise browsers for over a decade, and it's still doing it today.

This particular problem hits IE 6 and 7. If you have Internet Explorer 8, which is what comes on Windows 7, you're safe from this one.

The fastest way to avoid the problem is to turn off JavaScript. You do this by selecting the "Tools" menu in IE, then click your way down "Internet Options," "Security" tab and the "Internet" content zone. At this point, click "Custom Level" and in the "Settings" box, click "Disable" under "Active scripting." Click "OK" in the current dialog box, as well as the next and you're safe from this bug. The downside is that you'll have trouble using Web sites that make extensive use of JavaScript.

The smartest thing to do though is to dump IE 6, which even Microsoft wants you to do, or IE 7 for another browser. While IE 8 is the best of the IE family, historically, IE has a lousy security track record.

I think your best move to keep the world from sneaking in some malware over your browser is to get the latest versions of Firefox 3.5.5 or Google's Chrome 3.0.x Web browser. Neither is perfect, but they are better than IE. I wish I could recommend Opera, but I continue to have real concerns about Opera's built-in Web server security.

Regardless of which browser you choose, do yourself a favor and move off IE 6 or 7. Any other browser will do a better job of protecting you from an increasingly hostile Web.

1 comment

    Anonymous 2 years ago
    Amen! Any push to get people OFF IE altogether is best. Granted we need to use IE at work, but I am running IE8 inside of Firefox using the IE Tab extension. Good article.

      Add a comment

      Post a comment using one of these accounts
      Or join now
      At least 6 characters

      Note: Comment will appear soon after you have activated your account.
      Obscene/spam comments will be removed and accounts suspended.
      The information you submit is subject to our Privacy Policy and Terms of Service.

      ITworld LIVE

      SecurityWhite Papers & Webcasts

      White Paper

      Overcome Top 7 Admin Challenges of Active Directory

      As Active Directory's role in the enterprise has drastically increased, so has the need to secure the data. Gain insight on creating repeatable, enforceable processes that reduces administrative overhead and enables robust, customizable reporting and auditing capabilities. Brought to you by NetIQ.

      White Paper

      Insiders Can Ruin Your Company. Take Action.

      Did you know that 80 percent of threats to an organization come from the inside? The threat from insiders is often overlooked in organizations worldwide. This white paper from NetIQ, discusses key technology solutions that help to prevent and detect insider threats.

      White Paper

      Top Solutions and Tools to Prevent Devastating Malware

      Custom malware frequently goes undetected. According to Forrester Research, the best way to reduce risk of breach is to deploy file integrity monitoring (FIM) tools that provide immediate alerts. This white paper has been brought to you by NetIQ, the leader in solving complex IT challenges.

      White Paper

      Streamline Compliance and Increase ROI

      Streamline, simplify, and automate compliance related activities; especially those that impact multiple business units. This white paper from NetIQ, outlines solutions that will help your business gain the maximum return on investment possible while aligning your compliance programs.

      White Paper

      X-Ray of the PCI Process-4 Proactive Steps

      This white paper from Forrester Research Inc., helps break PCI into understandable components. Security and risk professionals will gain knowledge and insight into creating a compliant and secure IT environment. Follow these four proactive steps now before your next audit. Brought to you by NetIQ.

      See more White Papers | Webcasts

      Answers - Powered by ITworld

      Ask a question

      Ask a Question