Disable 'majority' of browser features

By Victoria Ho, ZDNet Asia
Friday, January 11, 2008 05:59 PM

Disabling the majority of features in a Web browser may be your safest bet to keep malicious hackers at bay, says a U.S.-based IT security watchdog.

The United States Computer Emergency Readiness Team (US-CERT) said in a report released Thursday: "Many Web applications try to enhance your browsing experience by enabling different types of functionality, but this might be unnecessary and may leave you susceptible to being attacked. The IT security group is part of the U.S. Department of Homeland Security.

"The safest policy is to disable the majority of those features unless you decide they are necessary," the research team said.

While the exact browser settings differ from one browser to another, most platforms have settings and functions that are enabled by default.

US-CERT recommends that users set the highest security level possible, only enabling features when they are required, and to disable them again after the user is done with the Web site that required the functions.

What to disable in your Web browser:

  • JavaScript: Some sites rely on Web scripts such as JavaScript, to achieve a certain appearance or functionality, but these may potentially be used in an attack.
  • Java and ActiveX controls: These programs are used to develop or executive active content, but may also put you at risk.
  • Plug-ins: Additional software that extends the functionality of your browser. Before installing them, make sure they are necessary and originate from a trustworthy site.
  • Cookies: Web sites store these on your PC to remember data about you, so companies can use the information to identify you on subsequent visits to their sites. It is best to disable the cookies and enable them only if you visit a site that requires them.
  • Pop-up windows: Blocking pop-up windows will minimize the number of pop-up advertisements you receive, some of which may be infected with malicious spyware.


WORTHWHILE?

1

54 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

OpenAmplify developer's diary - part three: Topic intention comparisons

Web Development

Justin James chronicles his process of using Hapax's OpenAmplify Web service to create an application that can match documents with content that is similar or identical to the source document.


Read more »



 
Virtualize your way to cost savings
Build an infrastructure that is flexible, scalable, and economical, as you strive to become a truly agile business.

Red Hat Outlines Its Virtualization Strategy and Roadmap for 2009
» Watch the video




What Y2K can teach us about 2012

Blog thumbnail

Dec. 21, 2012. It's a big day on the calendar, particularly because some believe it marks the last day of the world as we know it. The apocalypse. Armageddon.

The..... by Eileen Yu

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web