Internet Explorer 8 to get antimalware protection

By Robert Vamosi, CNET News.com
Friday, July 04, 2008 10:47 AM

On Wednesday, Microsoft announced new security features within the upcoming release of Internet Explorer 8 Beta 2.

The features are designed to combat the rising tide of drive-by downloads and malicious scripts contained within carefully crafted links embedded in e-mail and Web pages. Most of the new features require systems to be running Windows Vista SP1 or Windows XP SP3.

Perhaps the most anticipated addition is Internet Explorer's new antimalware protection. Opera 9.5 and Firefox 3 both recently added antimalware protection. Safari has so far not announced plans for similar protection.

Using mostly its own antimalware technology, Microsoft will block emerging threats by masking the entire IE 8 browser screen with a warning to users. The addition of malware protection to the existing antiphishing protection will be re-branded as the Microsoft SmartScreen filter.

IE 8 Beta 2 will have a Cross Site Scripting (XSS) filter, preventing scripts within a link from executing on the browser.

Previously announced features include highlighting domain names from the rest of the URL (so you can visually see that you are on eBay.com, not some other site), and extended verification SSL.

IE 8 Beta 1 has already introduced several changes when handling ActiveX components. Components will be installed per user, which eliminates the need for everyone to have administrator privileges. In addition, you must acknowledge or opt-in for the component to run, eliminating drive-by downloads. Components will be per site and will only be available from site of origin.

Finally, site developers can request killbits from Microsoft which can be sent via Windows Update to terminate risky or outdated components.

For developers, Microsoft is including improvements for better communication between the client browser and Web server. Cross Domain Requests (CDR) is a more secure way for the browser to pull data from other domains; and Cross Domain Messaging (XDM) is a more secure means for a browser to send a message across a domain. Microsoft says it is working with other browser vendors to standardize these.

The public Beta 2 for Internet Explorer is expected sometime in August 2008.

This article was first published as a blog on CNET News.com.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.

Guest user

Guest user

Level: 
Joined: —
Already a member? Log in »



 

Loading...

Tech Jobs Now!

Fix numbers that deviate from your numbered list format

Microsoft Office Suite

Here's how you can eliminate the paragraph formatting to make the number match the others.


Read more »



  • HPC Applications

    Ever wondered if High Performing Computing systems really matter in our day-to-day world? Let Dr David Scott from Intel take you a for quick tour on developing HPC applications.
    Play video


  • Maximize IT Spend: Business Acceleration

    How do you ensure your IT solutions are well integrated and streamlined across your enterprise? Rajen from Oracle highlights the important considerations ...
    Play video


  • HPC Architecture: Explained

    Why is High Performance Computing increasingly in demand in today's businesses? Find out which is the most widely deployed HPC architecture today.
    Play video

Tags

  1. apple
  2. attacks
  3. black
  4. cards
  5. data
  6. dns
  7. e-mail
  8. facebook
  9. flaw
  10. flaws
  11. fraud
  12. google
  13. hits
  14. iphone
  15. london
  16. mac
  17. malware
  18. microsoft
  19. over
  20. patch
  21. researcher
  22. researchers
  23. security
  24. spam
  25. trojan
  26. uk
  27. us
  28. users
  29. warns
  30. worm

Objectivity and the rise of online forums

Blog thumbnail

Last week, I met a guy who was operating an online car blog. What he told me during that meeting made me reflect how online forums, or Web 2.0 technologies..... by Melvin G. Calimag

Read more »