Get a Pentest and security assessment of your IT network.

News

Microsoft Translation Bugs Open Edge Browser to Trivial UXSS Attacks

The bug in Edge s auto-translate could have let remote attackers pull off RCE on any foreign-language website just by sending a message. Microsoft patched two bugs in its Chromium-based Edge browser last week, one of which could be used by an attacker to bypass security and to remotely inject and execute arbitrary code on any website. An exploit would require user interaction, though, though. Microsoft said there are no known exploits, however researchers have published a working proof-of-concept attack.

Source: https://threatpost.com/microsoft-edge-browser-uxss-attacks/167389/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

1 day attack with DDoS booter costs $60 causing $720k in damageSecurity Affairs

News

NSA-linked Cisco exploit poses bigger threat than previously thought