News

IE Flaw Remains Unpatched

The third installment of Microsoft's monthly patch roundups came and went last week with three new security bulletins but without a fix for a well-known Internet Explorer vulnerability.

Microsoft is aware of a major problem in Internet Explorer that involves spoofed Web site addresses and provides the technical foundation for several so-called phishing scams. These scams involve an e-mail instructing a user to "re-enter" or otherwise divulge banking, credit card information or personal financial information. Some phishing scams in wide circulation use spoofed e-mail addresses that make it appear that users are being sent to sites of legitimate institutions such as Barclays or Citibank.

Microsoft continues to point users concerned about the problem to a Web page originally posted in December. That page is available here: support.microsoft.com/default.aspx?scid=kb;[ln];833786.

The Microsoft page lists a series of steps to make sure that a site is not being spoofed until Microsoft completes a fix for the problem. Among the recommendations are running a Java script or checking digital certificates. However, the steps are fairly technical for non-IT end users. A better course of action for those users might be an e-mail reminder alerting them that phishing scams are in circulation and that they should be even more suspicious than usual of organizations seeking financial information from them via e-mail.

About the Author

Scott Bekker is editor in chief of Redmond Channel Partner magazine.

Featured

  • How To Replace an Aging Domain Controller

    If the hardware behind your domain controllers has become outdated, here's a step-by-step guide to performing a hardware refresh.

  • Azure Backup for SQL Server 2008 Available at Preview Stage

    Microsoft added the option of using the Azure Backup service to provide recovery support for SQL Server 2008 and SQL Server 2008 R2 when those workloads are hosted on Azure virtual machines.

  • Microsoft Suggests Disabling Old Protocols with Exchange Server 2019

    Exchange Server 2019 with Cumulative Update 2 (CU2) can help organizations rid themselves of old authentication protocols, which constitute a potential security risk.

  • Microsoft Previews New Edge Browser on Windows 7 and Windows 8.1

    Microsoft announced this week that it has released previews of its Chromium-based Microsoft Edge Web browsers for use on Windows 7, Windows 8 and Windows 8.1 systems.

comments powered by Disqus

Office 365 Watch

Sign up for our newsletter.

Terms and Privacy Policy consent

I agree to this site's Privacy Policy.