Another IE Spoofing Hole Found

Web Browsers
Source: eWeek
Another IE Spoofing Hole Found
From the article, “Security researchers are warning of another spoofing vulnerability in Internet Explorer, this time one that allows an attacker to mask the true file extension of malicious downloads. The file-extension spoof means that an attacker could lull a user into opening a malicious file from a Web site by making the file appear as a legitimate extension, such as a PDF or MPEG, researchers said on Wednesday.”
Update: Microsoft to Change IE Behavior to Block Spoofing Attacks (via eWeek)
Update: IE Update Will Block Some URLs (via PC World)

Comments are closed.