There are currently 14 unpatched vulnerabilities in Internet Explorer. And by “unpatched”, I mean “not fixed even if you are completely up to date on Windows Update and all the other assorted security patches and hotfixes festering in remote corners of microsoft.com.” One unpatched vulnerability, publicly reported almost 3 months ago, allows an attacker to steal cookies, which in turn can be used to take over a Hotmail account forever.
§
I am no longer accepting public comments on this post, but you can use this form to contact me privately. (Your message will not be published.)
§
firehose ‧ code ‧ music ‧ planet
© 2001–8 Mark Pilgrim