ie8 fix
madison

Reply to Message

Given the method of attack and the fact that the user never gets to SSL connection, this article is wrong kind of alarm.

Once more this exploit is a trust based attack on the assumed actions of unencrypted HTML.

Specifically this attack is easily defeated by NEVER opening plain HTTP:// pages -- which should really be the modern browsing standard.
ie8 fix
Click Here
ie8 fix

The best of ZDNet, delivered

ZDNet Newsletters

Get the best of ZDNet delivered straight to your inbox

ie8 fix