The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Site slams IE's security
Time: 11:56 EST/16:56 GMT | News Source: CNET | Posted By: Robert Stein

The group has set up a Web site reminiscent of Apple Computer's "Real People" ad campaign, which urged people to switch from Microsoft's Windows operating system to the Macintosh. The site features first-person testimonials of people who switched from IE to alternatives.

Write Comment
Return to News

  Displaying 1 through 25 of 304
Last | Next
  The time now is 2:26:50 PM ET.
Any comment problems? E-mail us
#1 By 40 (216.68.248.200) at 8/25/2004 1:53:09 PM
That site is funny. Firefox has more top security issues then IE does. There are plenty of holes in all of them, if you don't use basic security, and lock your system down.

If i am not wrong, the list of Security Risk went - 1 - Firefox, 2 - Moz, 3 - IE over the last 2 weeks.



#2 By 2332 (66.228.91.12) at 8/25/2004 2:27:11 PM
#2 - Hey Parkker, notice than all those numbers are less than 1?

IT'S A BETA VERSION OF THE BROWSER.

Regardless, Firefox is still safer than IE. You know why just as well as I do. Give it up and stop spreading your propaganda.

I won't even look at IE again until Longhorn.

#3 By 2332 (66.228.91.12) at 8/25/2004 6:32:08 PM
#8 - Curious, what excuse are the FireFox people going to use once it's out of beta...

First, I prefer to call myself a "rational person" not a "Firefox person".

Second, the biggest excuse is that Firefox is better in pretty much every possible way than IE. And as long as it doesn't reach a significant market share (20%+), it will be safer than IE no matter how many security holes it may have because bad guys will choose to target IE instead of Firefox.

Simple as that.

#6 - 4.7MB downloaded 5 times in 8 weeks is not trivial.

Ya, I mean on a 56k modem that would take a whopping 15 minutes for each download! That's an hour and 15 minutes over 8 weeks! That means you would spend .093% of your time over that 8 weeks downloading new version of Firefox! Those bastards!

Thankfully, most people have broadband these days (and I would venture a guess that an even greater percentage of Firefox users have broadband since they're typically more informed and tech savvy), so that probably brings it down to .01% or so. Still unacceptable.

Sigh...

#4 By 10896 (24.25.182.11) at 8/25/2004 6:46:32 PM
What a bunch of idiots that got for the those so-called switch browser ads. Both Mozilla and FireFox are unusable products for most users. No discussion of the security problems that have existed for years and are never fixed, the perpetual upgrade cycle with no installer upgrade, just uninstall, reinstall the new version and then reconfigure. And finally how about the severe memory problems that have never been fixed and appear to get worse with each version of Mozilla and FireFox.

#5 By 7797 (68.142.9.161) at 8/25/2004 9:26:51 PM
Firefox has lots of areas where it can improve. However it IS improving at a much faster rate than IE which will be pretty much stagnant for another couple of years until longhorn comes out. For most regular users i think Firefox will be "good enough" by the time it has enough market share to matter.

#6 By 21203 (4.5.32.137) at 8/25/2004 10:48:11 PM
Regardless, Firefox is still safer than IE. You know why just as well as I do.

Wrong-o. Firefox is exactly as safe as IE, if you're an intelligent user.

If you want to treat your browsers like you don't know anything about computers, ok ... firefox might be considered better. But are you comparing it to XP-SP2? Are you able to hit yes/no prompts with a moderate amount of intelligence?

Products don't have to be baby-safe to be "better", you just need to eventually learn not to bang the sharp corners against your forehead. If you really want to allow activeX to install without prompting, or click "Yes" to install stuff without reading the prompts, hey... by all means blame the product.

#7 By 2332 (65.221.182.2) at 8/26/2004 1:39:44 AM
#13 - Sure ... someone will go to all the trouble and risk to setup a phishing site and limit the exploits to IE instead of spending an extra 20 minutes to catch Mozilla/Netscape and Firefox users (same codebase, same exploits) too. Not a chance.

Huh? You're obviously not a coder. Developing exploits is often a difficult and tedious task. Just because somebody develops an exploits for IE doesn't mean anything even remotely similar will work for Firefox/Mozilla with "20 minutes" of work. In fact, it's usally more akin to starting from scratch.

#20 - Wrong-o. Firefox is exactly as safe as IE, if you're an intelligent user.

No, I'm afraid you're "wrong-o". Internet Explorer is targeted FAR more often than Firefox. No matter how intelligent you are, many of the exploits for IE require absolutely no user interaction and there is nothing you can do to prevent them from running aside from sometimes turning off all scripting which makes IE essentially useless.

All it takes is for somebody to buy $5000 worth of banner advertising on some popular sites and they can infect millions of machines with whatever they wish - typically spyware of some kind. In fact, this is currently the most popular way to get spyware on people's machines... buying ads and using commonly available IE exploits (including exploits that work on a FULLY patched machine... yes, even SP2) to get it installed on anybody's machine who happens to visit a page with their ad on it.

Sure, most sites remove this advertising once they realize what's going on, but it only takes a day of ads to get millions of machines infected.

So, no matter how intelligent you are, using IE is like asking people to rape your machine.

Is Firefox riddled with security holes? Could be! But the fact of the matter is nobody cares about < 1% of the market. Everybody cares about the other 99%.

#8 By 23275 (68.17.42.38) at 8/26/2004 2:37:05 AM
Fundamental security vice practical security?

Is that the real issue? If it is assumed that IE is attacked more frequently, or simply more apparently and attended by more press when it is attacked - does this then mean that it is fundamentally less secure? Similarly, if Firefox/Mozilla are attacked less frequently, or less apparently, does this mean they are fundamentally more secure, or simply practically so?

If we accept that Windows/IE are attacked with far greater frequency, and more apparently, is it not then fundamentally more secure than other browsers and deserving of that judgment? This may be more valid than we assess, because IE has more capabilities than a base install of Firefox/Mozilla. The reverse then must also be true, when for example Mozilla is enabled with the ability to handle COM Clients like ActiveX [which it can], and if fully enabled with plug-ins, what is their <Firefox/Mizilla> fundamental level of security actually assessed to be? Has it been tested, and when evaluating patch proliferation, are they also fairly assessed - mindful of the time and file download of various plug-ins?

I suspect that any judgment that IE is fundamentally less secure cannot be supported in science - not even amongst a study-group much less within a control group. Now, given the proliferation of IE and the incidence of infection, the science arguing that IE is practically less secure is at best an unsupported assumption. I maintain that insufficient data has been assembled against IE's installed potential in the context of XP SP2 to be mentioned, much less commented upon conclusively. One might "assume" that SP2's impact will elevate IE's fundamental and certainly, practical security position.

As long as we are dealing with simple assumptions and based upon both sides of the discussion, one, and without the benefit of science, but simply based upon numbers which are both so high [installed based] and also so low [incidence of infection relative to that installed base], that IE is both fundamentally and practically more secure, because the IC is "manifest" or so overwhelmingly large that such assumptions may be arrived at without the need for any specialized knowledge.

Finally, I maintain that no lay parties outside of IE's base of support actually want to engage in meaningful studies designed to scientifically challenge what is manifest. It is simply easier to treat opinion as fact, which makes for interesting boards and spirited exchanges - it does not however, form the basis for making a sound decision opposite which browser to use.
"I mean, at one of the examples, there was a business consultant...do you really want a person challenged by securing a browser to consult you on the complexities of growing a business? I should think such an achievable task would be within the intellectual capacity of any decent business person."

#9 By 2332 (65.221.182.2) at 8/26/2004 11:59:00 AM
#22 - I maintain that insufficient data has been assembled against IE's installed potential in the context of XP SP2 to be mentioned

http://www.mikx.de/scrollbar/

Nough said.

By the way, be sure to check your startup folder after you visit that page. You'll have "boom.exe" in there, regardless of whether or not you have the latest and greatest patches from MS.

#10 By 23275 (68.17.42.38) at 8/26/2004 1:19:43 PM
#24 - it didn't work and no Boom.exe was installed to the system [XP Pro SP2 RTM].
Is there another link that demonstrates the exploit? I checked all processes, msconfig, startup folder, explorer and registery and did not note an exe for Boom. I do harden all of our systems, so it may be that this process stops the exploit as listed. Thanks

This post was edited by lketchum on Thursday, August 26, 2004 at 13:20.

#11 By 17996 (69.21.203.150) at 8/26/2004 1:41:10 PM
Well for me it copied "booom[1].exe" to my Startup folder... is it supposed to be a zero-length file (for demo purposes) ?

Oddly, it won't let me delete it because its still in use... maybe it will after I close IE.

Glad I use my scroll wheel :-)

#12 By 116 (24.173.215.234) at 8/26/2004 1:47:05 PM
I just tried it with a brand new install of XP and SP2 and it didn't do anything. Whats the deal?

#13 By 2332 (65.221.182.2) at 8/26/2004 9:54:09 PM
You need to scroll down the page using the scroll bars on the right of the window. You can't just use your scroll wheel.

The exploit works by fooling a user into dragging an element on the page to a local security zone. In this case, there is a hidden image over the scroll bar which, when clicked and dragged down, copies that EXE to the startup folder.

This definitly works on ALL Windows XP installs as long as javascript is enabled.

#14 By 23275 (68.17.42.38) at 8/26/2004 11:25:46 PM
#28 - Yes, I read the instructions on the page, then clicked on, held and drug the scroll-bar as instructed. Yet, boom.exe did not execute as suggested.

[System is WXP SP2, IE 6.0.2900] Binaries and Scripting are enabled. Thanks

This post was edited by lketchum on Thursday, August 26, 2004 at 23:48.

#15 By 4240821 (213.139.195.162) at 10/26/2023 12:17:53 PM
https://sexonly.top/get/b969/b969rqhyqbtslwgqvsc.php
https://sexonly.top/get/b428/b428ljphzkntbtmqzgo.php
https://sexonly.top/get/b565/b565rdgqnyrftsbgqdu.php
https://sexonly.top/get/b290/b290yckuvuxsxytisey.php
https://sexonly.top/get/b825/b825deqagdgunzioklu.php
https://sexonly.top/get/b638/b638fnaznlevmabsijy.php
https://sexonly.top/get/b550/b550xbksxcigpktkxck.php
https://sexonly.top/get/b366/b366tfgjksfzaugnrye.php
https://sexonly.top/get/b640/b640fpoxpdcrbilgznz.php
https://sexonly.top/get/b949/b949xmeoibkmxoywsgl.php
https://sexonly.top/get/b561/b561mrooviblicswktw.php
https://sexonly.top/get/b407/b407wnildyccgdivgju.php
https://sexonly.top/get/b437/b437aiyzldmelgmaidu.php
https://sexonly.top/get/b384/b384ocstmulzaiiqlzq.php
https://sexonly.top/get/b378/b378upbvysmaehgvcgi.php
https://sexonly.top/get/b126/b126wvuemfzltmiwkdj.php
https://sexonly.top/get/b291/b291xzqunsssxjxqjre.php
https://sexonly.top/get/b955/b955loozmsrwykjomjo.php
https://sexonly.top/get/b377/b377xcuaqnynqzrpytj.php
https://sexonly.top/get/b990/b990fiexiisojgqmbmh.php
https://sexonly.top/get/b424/b424xjzbfcxlydjursd.php
https://sexonly.top/get/b12/b12vvwncrjhjrrdfyn.php
https://sexonly.top/get/b783/b783bwutnkgaznfjvbw.php
https://sexonly.top/get/b648/b648joqylaiocngsspl.php
https://sexonly.top/get/b416/b416sxrdmlfxpagpztx.php
https://sexonly.top/get/b68/b68fkomhwoilbagqda.php
https://sexonly.top/get/b193/b193bghpzlwdbqcexbg.php
https://sexonly.top/get/b866/b866dgbeofkhazmgiqu.php
https://sexonly.top/get/b148/b148xhpivcjburhpkat.php
https://sexonly.top/get/b738/b738xqvqqlklheickpm.php
https://sexonly.top/get/b406/b406hnnyvsyyafdqsex.php
https://sexonly.top/get/b282/b282gsbdksbuqtqneuo.php
https://sexonly.top/get/b712/b712svniodfunzuvjph.php
https://sexonly.top/get/b87/b87eghvphxdiambwhr.php
https://sexonly.top/get/b291/b291yptusbzaemftlqq.php
https://sexonly.top/get/b818/b818qwybmewympwyysq.php
https://sexonly.top/get/b424/b424jwaaycicjsvjknq.php
https://sexonly.top/get/b523/b523amxfzhuovpufpwr.php
https://sexonly.top/get/b834/b834wjralnknutewuoo.php
https://sexonly.top/get/b813/b813xzvbmrpcrqdtoxf.php
https://sexonly.top/get/b106/b106eahfmveiqupouvo.php
https://sexonly.top/get/b430/b430ewirmdmhbiktkpg.php
https://sexonly.top/get/b231/b231pimdosixtgfmnfl.php
https://sexonly.top/get/b917/b917lhmhcnfgdhgpuxl.php
https://sexonly.top/get/b144/b144ybmlsrhyyjkbmdy.php
https://sexonly.top/get/b515/b515kkcqhbyreqronsx.php
https://sexonly.top/get/b874/b874jajvnvallvpktwo.php
https://sexonly.top/get/b253/b253cururfvxaflmbsm.php
https://sexonly.top/get/b127/b127tqkzjimzmjnfslr.php
https://sexonly.top/get/b894/b894ylllyhsfzwaezrt.php

#16 By 4240821 (103.151.103.150) at 10/30/2023 11:08:09 AM
https://www.quora.com/profile/StacyMoore489/ItsJennyxxx-kate-anne-lunamoon010-TallTanAvailable-Latia-Del-Riviero-scarlett23xxx-2Kinkyy4U-LAFLACALATINA
https://www.quora.com/profile/AlannaGomez1/therealthickup-Lunadelight-Qualivefeet-Actuallybunni-Zoe_loves_to_cum-mskimi-MaSa_Couple-themistressbrie
https://www.quora.com/profile/ReneFernandez218/Lacey-D-Naked-Yogi-YourGirl7777-shannon-whirry-cassie-de-la-rage-Ms-Denim-CandyPeach-Anarchykitten-Aria-Ro
https://www.quora.com/profile/IsyanButler69/Creamy-Nympho-TramuntanaCouple-F-A-B-entertainment-Saph_Savv-slainXlain-CoupleOfCookies-Jessicableepxx-ezu
https://www.quora.com/profile/CheVarga939/OctaviaAlba-exoctic-1-NaughtyTeacher-Sadie-Sadistic-Dani-Doomsday-Jessica-Jewel-Boobs-Donna-Curvymama2022
https://www.quora.com/profile/TimothyRoman994/Velvet-Ivy-stracy-stone-FeuSensuel-Anastasia-Gree-Jessi_boobs-CharloteNaia-Dina01-Ameliaa-Ward-TellUsHow
https://www.quora.com/profile/KarlaMiller530/Luvbokeh-Dani-Summers-OhanaBaby-LuckyGirl_Hab-Manuvits-Helektra-RubyRoseSmith-LizBlack-curiouscouple2327
https://www.quora.com/profile/WilliamSuder780/yum-the-boss-kavelle-avaangeleyes-kittycatloona-KittenRuby-Truecharm-cherry-leigh-Missyelle-Juliapeachy
https://www.quora.com/profile/SheilaHolfeltz749/elena-smesharik-angel-cash-amber-4-vabaddie97-aubrey-snow-Barefoothippy-bumbleknee-lovedontlive-Klissa-K
https://www.quora.com/profile/NicoleLopez600/Ana3785-A3sth3tic-Rose-jazmine-leih-ParanoidLewd-Daphnemadison-rino-tokiwa-metaviolet-SinLord-Hotcouple9

#17 By 4240821 (103.152.17.80) at 10/31/2023 2:38:54 AM
https://app.socie.com.br/Loversinlovenestpixie333
https://app.socie.com.br/Nataliahoney18Babycreamcakes
https://app.socie.com.br/TotallyTidyMarshmellowXO
https://app.socie.com.br/read-blog/97640
https://app.socie.com.br/blacknwhitecreampieLilmomma1297
https://app.socie.com.br/read-blog/97394
https://app.socie.com.br/read-blog/97333
https://app.socie.com.br/read-blog/97639
https://app.socie.com.br/read-blog/97223
https://app.socie.com.br/read-blog/98150

#18 By 4240821 (103.151.103.150) at 10/31/2023 7:53:39 PM
https://app.socie.com.br/read-blog/97643
https://app.socie.com.br/Gypsy5787Juiceexx
https://app.socie.com.br/read-blog/97486
https://app.socie.com.br/read-blog/97197
https://app.socie.com.br/judyjolieOliviaVee
https://app.socie.com.br/read-blog/98218
https://app.socie.com.br/read-blog/97506
https://app.socie.com.br/paolashumagerNaughtleo
https://app.socie.com.br/Frobbinhoodlaurenphillips
https://app.socie.com.br/read-blog/97394

#19 By 4240821 (62.76.146.75) at 11/1/2023 7:22:58 PM
http://activewin.com/mac/comments.asp?ThreadIndex=65615&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=73061&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=81846&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=61129&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=12496&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=77435&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=3845&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=39011&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=4453&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=11428&Group=Last

#20 By 4240821 (212.193.138.10) at 11/3/2023 3:49:06 AM
http://activewin.com/mac/comments.asp?ThreadIndex=3712&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=73800&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=72214&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=10813&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=2858&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=64513&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=83193&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=51860&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=35075&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=31503&Group=Last

#21 By 4240821 (109.94.216.41) at 11/5/2023 9:38:38 AM
https://hotslutss.bdsmlr.com/post/653082385
https://hotslutss.bdsmlr.com/post/654609837
https://hotslutss.bdsmlr.com/post/664296278
https://hotslutss.bdsmlr.com/post/658547516
https://hotslutss.bdsmlr.com/post/650463066
https://hotslutss.bdsmlr.com/post/652772996
https://hotslutss.bdsmlr.com/post/658074719
https://hotslutss.bdsmlr.com/post/650372704
https://hotslutss.bdsmlr.com/post/650362788
https://hotslutss.bdsmlr.com/post/654917865

#22 By 4240821 (92.119.163.194) at 11/6/2023 1:06:22 AM
https://printable-calendar.mn.co/members/19895350
https://printable-calendar.mn.co/posts/44897338
https://printable-calendar.mn.co/members/19907734
https://printable-calendar.mn.co/members/19909362
https://printable-calendar.mn.co/members/19903116
https://printable-calendar.mn.co/members/19893255
https://printable-calendar.mn.co/members/19894217
https://printable-calendar.mn.co/members/19898741
https://printable-calendar.mn.co/members/19894334
https://printable-calendar.mn.co/members/19896547

#23 By 4240821 (62.76.146.75) at 11/8/2023 10:34:48 AM
https://www.hackerearth.com/@bergamanci1983
https://www.hackerearth.com/@ermudroytran1970
https://www.hackerearth.com/@zererypa1988
https://www.hackerearth.com/@bowlwhipcotho1973
https://www.hackerearth.com/@epivchronab1976
https://www.hackerearth.com/@clarobmarmo1988
https://www.hackerearth.com/@quaaspelnalu1975
https://www.hackerearth.com/@beetlaichoba1981
https://www.hackerearth.com/@latinonpchec1984
https://www.hackerearth.com/@lothinggahol1975

#24 By 4240821 (45.146.26.215) at 11/10/2023 6:54:46 PM
http://www.ttbizonline.com/pro/20231109084247
http://www.ttbizonline.com/pro/20231110015358
http://www.ttbizonline.com/pro/20231109155923
http://www.ttbizonline.com/pro/20231109113535
http://www.ttbizonline.com/pro/20231110000204
http://www.ttbizonline.com/pro/20231109180133
http://www.ttbizonline.com/pro/20231110014003
http://www.ttbizonline.com/pro/20231109173711
http://www.ttbizonline.com/pro/20231109221028
http://www.ttbizonline.com/pro/20231109193749

#25 By 4240821 (109.94.216.41) at 11/11/2023 10:02:33 PM
https://www.mddir.com/company/jessica_rose69-onlyfans-leaked/
https://www.mddir.com/company/puppeteer-raul-patreon-leak/
https://www.mddir.com/company/alexandra-kroha-onlyfans-leak/
https://www.mddir.com/company/celeste-jonnes-clips4sale-leak/
https://www.mddir.com/company/daisy_dark0-patreon-leaked/
https://www.mddir.com/company/southernproduction-onlyfans-leak/
https://www.mddir.com/company/elizabeth-jean-manyvids-leak/
https://www.mddir.com/company/akari1089-clips4sale-leak/
https://www.mddir.com/company/earthxwitch-fansly-leaked/
https://www.mddir.com/company/pinkskye2022-onlyfans-leaked/

Write Comment
Return to News
  Displaying 1 through 25 of 304
Last | Next
  The time now is 2:26:50 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *