Serious bug in fully patched Internet Explorer puts user credentials at risk

Wednesday, February 4th, 2015

A vulnerability in fully patched versions of Internet Explorer allows attackers to steal login credentials and inject malicious content into users' browsing sessions. Microsoft officials said they're working on a fix for the bug, which works successfully on IE 11 running on both Windows 7 and 8.1. The vulnerability is known ...

Private photos exposed in Instagram hack

Tuesday, February 11th, 2014

Private profiles of Instagram users could be made public as a result of a vulnerability that took almost six months to fix. The flaw would have enabled hackers to change privacy settings within user profiles to expose potentially sensitive photos to the internet, or to lock down popular pages by marking ...

Microsoft talks more about IE10 security features

Saturday, June 22nd, 2013

In May, NSS Labs issued the results of its study of web browsers in terms of blocking malware. It showed Microsoft's Internet Explorer 10 blocking 99.96 percent of all malware during their test period, which was a much better percentage than Chrome or Firefox. Today, Microsoft went over some of the features ...

Google Details Upcoming Chrome Security Features

Wednesday, June 15th, 2011

Google has released a list of security features being built into the upcoming Chrome 13 and includes Content Security Policy (CSP) and HTTP Strict Transport Security (HSTS) implementations, certificate pinning and self-XSS filter. The Content Security Policy (CSP) is a specification developed by Mozilla which aimed at providing a solution for ...

Vulnerability in MHTML Could Allow Information Disclosure

Saturday, January 29th, 2011

Microsoft is investigating new public reports of a vulnerability in all supported editions of Microsoft Windows. The vulnerability could allow an attacker to cause a victim to run malicious scripts when visiting various Web sites, resulting in information disclosure. This impact is similar to server-side cross-site scripting (XSS) vulnerabilities. Microsoft ...