QuickTime flaw found, also affects Internet Explorer on Vista

By

Researchers at TippingPoint said today that the vulnerability exploited last week to hack into a MacBook Pro at CanSecWest also affects Microsoft's Internet Explorer browser on the Windows Vista operating system.

QuickTime flaw found, also affects Internet Explorer on Vista
The flaw was first discovered as part of a "hack-a-Mac" contest at the Vancouver, B.C. conference, for which researcher Dino Dai Zovi won $10,000.

Terri Forslof, manager of security response at TippingPoint, said today that "new facts have emerged as we have had time to analyse (the flaw) further."

"Initially the proof-of-concept code provided by the researcher, Dai Zovi, only worked against the Safari and Firefox browsers. We have now verified that this issue affects both Windows and Mac operating systems, including Windows Vista through Internet Explorer," she said. "We strongly believe at this point that any Java-enabled browser that has the vulnerable QuickTime Java extension installed is affected by this issue."

The flaw was initially believed to affect only Apple’s Safari browser.
Got a news tip for our journalists? Share it with us anonymously here.
Tags:

Most Read Articles

Qantas facing 'significant' data theft after cyber attack

Qantas facing 'significant' data theft after cyber attack

Home Affairs officer accessed data on "friends and associates"

Home Affairs officer accessed data on "friends and associates"

Ex-student charged over Western Sydney University cyberattacks

Ex-student charged over Western Sydney University cyberattacks

International Criminal Court hit by cyber attack

International Criminal Court hit by cyber attack

Log In

  |  Forgot your password?