 | reply to Smokey Bear
Re: IE Zero-Day |
|
 antdudeA Ninja AntPremium,VIP join:2001-03-25 United State kudos:4 Reviews:
·RoadRunner Cable
| reply to therube It could be one of those out of the bound (OOTB) releases. -- Ant @ AQFL.net and AntFarm.ma.cx. Please do not IM/e-mail me for technical support. Use this forum or better, »community.norton.com ! Disclaimer: The views expressed in this posting are mine, and do not necessarily reflect the views of my employer. |
|
 | I dont get it....Why do large corporations still use IE as their main browser instead of using Firefox or Chrome if IE is that bad? |
|
 Smokey Bearveritas odium paritPremium join:2008-03-15 Annie's Pub kudos:4 | reply to chachazz said by chachazz: You might want to take a second look at the diary published this week that is using EMET 3.5 as another tool to help defend your Windows systems against various attacks.
[3] »isc.sans.edu/diary.html?storyid=14797
Thanks chachazz , valuable info in your post. The use of EMET is highly recommendable and SANS explains very well. -- »bit.ly/gUqYaH - C. Brian Smith: Think of the exclamation point as a car horn: a little goes a long way. Lay on it too hard and everyones going to think youre a moron. |
|
 Reviews:
·T-Com
| said by Smokey Bear: said by chachazz: You might want to take a second look at the diary published this week that is using EMET 3.5 as another tool to help defend your Windows systems against various attacks.
[3] »isc.sans.edu/diary.html?storyid=14797
Thanks chachazz  , valuable info in your post. The use of EMET is highly recommendable and SANS explains very well. But will it work on W8 properly? Can´t find a version for it. -- Regards from Germany. Please excuse my stumbling English |
|
|
|
 Smokey Bearveritas odium paritPremium join:2008-03-15 Annie's Pub kudos:4 | According to MS, EMET will not work with W8. |
|
 StuartMWWho Is John Galt?Premium join:2000-08-06 Galt's Gulch kudos:2 | W8 has EMET (under another name?) built-in. Besides W8 comes with IE10 which isn't vulnerable. |
|
 StuartMWWho Is John Galt?Premium join:2000-08-06 Galt's Gulch kudos:2 Reviews:
·CenturyLink
1 edit | reply to antdude said by antdude:It could be one of those out of the bound (OOTB) releases. I think you mean Out Of Band 
Out Of Bounds is usually sports related  -- Don't feed trolls--it only makes them grow! |
|
 trparkyApple... YUMPremium,MVM join:2000-05-24 Cleveland, OH kudos:2 | Then Microsoft is wrong, I have EMET working on Windows 8 just fine. |
|
 | Why do large corporations still use IE as their main browser instead of using Firefox or Chrome if IE is that bad?
Also, If MS is not rolling out the patch on Tues, then we have two options basically. Use another browser, or upgrade to IE 9 and 10.
I am not upgrading to 9 or 10. They will have security flaws anyway...Im seriously thinking about using FF as my main browser. Im thinking of it very very much.
How about the rest of you? Are u guys willing to move to a different browser after this mess? |
|
 OlegBellsouth FastaccessPremium join:2003-12-08 Birmingham, AL kudos:2 | Exactly. There is no point of upgrading to IE 9 or 10. Thing is a lot of companies have a crazy policy that does not allow to go with any other browser, but freaking IE. |
|
 1 edit | And do people or users know if they have been attacked from this exploit? What are the signs and symtoms?
Ok, then let me ask this to everyone. For those of u here who have always have been a fan of IE or has or is still using IE as their main browser, are u considering to use another browser?
The reason I like IE, because I can lock it down using the Group Policy editor. Firefox does not have this kind of "granular" control. And thats perhaps one of the reasons why System Admins prefer to use IE at most companies.
Until MS rolls out this fix or patch, I will use FF instead....in the meantime. |
|
 antdudeA Ninja AntPremium,VIP join:2001-03-25 United State kudos:4 Reviews:
·RoadRunner Cable
| reply to StuartMW said by StuartMW:said by antdude:It could be one of those out of the bound (OOTB) releases. I think you mean Out Of Band  Out Of Bounds is usually sports related DOH! You're right. Dang sports. -- Ant @ AQFL.net and AntFarm.ma.cx. Please do not IM/e-mail me for technical support. Use this forum or better, »community.norton.com ! Disclaimer: The views expressed in this posting are mine, and do not necessarily reflect the views of my employer. |
|
 | A security researcher has found a way to bypass Microsoft's temporary "fix":»www.computerworld.com/s/article/···13-01-07 |
|
 | said by daveinpoway:A security researcher has found a way to bypass Microsoft's temporary "fix"n Info posted by Smokey Bear (on page 2) » Re: IE Zero-Day |
|
 trparkyApple... YUMPremium,MVM join:2000-05-24 Cleveland, OH kudos:2 | reply to StuartMW EMET does indeed work with Windows 8. I have it protecting Firefox on my Windows 8 installation. |
|
 StuartMWWho Is John Galt?Premium join:2000-08-06 Galt's Gulch kudos:2 Reviews:
·CenturyLink
| said by trparky:EMET does indeed work with Windows 8. That wasn't my point BTW. I thought W8 included some version of EMET out of the box. -- Don't feed trolls--it only makes them grow! |
|
 trparkyApple... YUMPremium,MVM join:2000-05-24 Cleveland, OH kudos:2 | Maybe, I don't know. |
|
 trparkyApple... YUMPremium,MVM join:2000-05-24 Cleveland, OH kudos:2 Reviews:
·Time Warner Cable
| ASLR and exploit mitigations Address Space Layout Randomization (ASLR) was introduced in Windows Vista and is essentially a technique to mitigate the infamous Buffer Overrun vulnerabilities by randomly moving the location of code and data in memory. In Windows 8 randomization is increased in order to foil known techniques for bypassing ASLR. Other mitigations include changes to the Windows kernel and heap, including new integrity checks and randomization using a similar approach to ASLR. Internet Explorer 10 will also benefit from these changes: besides including an Enhanced Protected Mode sandbox, there will be a ForceASLR option in IE10 that can randomize all modules loaded into memory by the browser, regardless if those modules did not opt in to use ASLR protection (developers can create modules that take advantage of ASLR protection by using the optional /DYNAMICBASE flag).
EMET provides much more than that. -- Tom Boycott AT&T uVerse! | Tom's Android Blog | AOKP (The Android Open Kang Project) |
|
 StuartMWWho Is John Galt?Premium join:2000-08-06 Galt's Gulch kudos:2 | Well regardless XP/Vista/Win7 users would be well served by installing/configuring it. Win8 I'm not sure. -- Don't feed trolls--it only makes them grow! |
|