NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Security

Security


Internet Explorer Accounts for 47% of All Browser Attacks

The Multiple Browser Zero Width GIF Image Memory Corruption attack accounted for 31% of browser attacks

By Marius Oiaga, Technology News Editor

25th of September 2006, 13:10 GMT

Adjust text size:


When describing the distribution of browser attacks in its Internet Security Threat Report Trends for January 06-June 06, Symantec concludes that Internet Explorer's prominence is correlated to the volume
of vulnerabilities that have affected the application in the first six months of 2006. In this context, out of the group evaluated by Symantec, including Microsoft IE, Apple Safari, the Mozilla family (including Firefox and the Mozilla browser), Opera, Netscape, and KDE Konqueror, Internet Explorer proved to be the prevalent target.

"During the first six months of 2006, Microsoft Internet Explorer was the most frequently targeted Web browser. It was targeted by 47% of all known attacking IP addresses. Some attacks target vulnerabilities that are present in multiple Web browsers. These vulnerabilities are typically present in numerous browsers because of shared source code, although this is not always the case. Browsers that fall within the "multiple browsers" category include Apple Safari, KDE Konqueror, the Mozilla Browser family, Netscape, Opera, Microsoft Internet Explorer and others. Attacks targeting multiple browsers were the second most common during the first half of 2006, accounting for 31% of all attacking IP addresses," revealed Symantec.

Additionally, Symantec has also comprised in its study statistics indicating the evolution of specific browser attacks. Microsoft Internet Explorer DHTML Object Race Condition Memory Corruption Attack is the runner up with 19% of attacks. But an Internet Explorer related vulnerability is also in third place, Microsoft Internet Explorer Remote URLMON.DLL Buffer Overflow Attack, with 17%. Mozilla JavaScript URL Host Spoofing Arbitrary Cookie Access Attack with 8% is just in forth place.

"The most common attack carried out against Web browsers between January 1 and June 30, 2006 was the Multiple Browser Zero Width GIF Image Memory Corruption Attack, which accounted for 31% of all detected Web browser attacks. This attack exploits the vulnerability of the same name, which was first disclosed in September 2002 and affects older Netscape, Mozilla, Galleon, and Opera Web browsers. This attack is carried out when a user loads a Web site containing a graphics interchange format (GIF) image file with a width field that is set to zero," stated Symantec.
Read by 1,112 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Fair (2.8/5) 8 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Dell and Symantec to Further Their Partnership

New IE Zero-Day Attack Emerges

Symantec's Insight on Security Risks

Symantec Reports the Atrophy of Mass-mailers

Symantec Launches the Research Labs Graduate Fellowship Program

Infrastructure Performance Slowdown Causes Lost Business

Symantec to Sponsor Tiger Teams Student Design Competition in Usable Security Research

Dell and Symantec to Control Out-of-Control Email

Symantec CPU Virus Update

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM