Chris Berry wrote:
From: Patrick Boucher <[EMAIL PROTECTED]>
>>
The first one i would use would be "Internet Explorer" There are so many bugs and work around holes.. I think it is worst then Outlook, Or Outlook express.

Well, I wasn't concerned with feature or useability bugs, only security ones, so I don't agree. If your IE is fully patched and configured it's not that bad. (though I personally use Mozilla instead because of the nice features).

I don't know whether this meets your criteria for a security bug, since it is by design. Here in Sweden we have had problems with IE users who (unknowingly) run ActiveX controls (so called dialers) which take over the modem and call expensive numbers instead of the regular ISP modem pool. Many private individuals have received very large phone bills because of this. (Up to 20,000 USD if I recall correctly from the news.)


See

http://www.konsumentverket.se/mallar/sv/artikel.asp?lngCategoryId=1175&lngArticleId=2180

(In Swedish. A public warning from the Swedish Consumer Agency.)

It's a problem with the default configuration and social engineering, but it still hurts and it's difficult to do anything about since the design of IE/ActiveX assumes users who are security aware. In my opinion this design assumption is a fundamental flaw in IE.

Regards,
Erik Rissanen


---------------------------------------------------------------------------
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.
Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.
Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
----------------------------------------------------------------------------




Reply via email to