Microsoft urges Safari caution
By Stuart Turton
Posted on 2 Jun 2008 at 10:48
Microsoft is advising users to restrict their use of Apple's Safari browser, until a patch becomes available to plug a potential vulnerability.
Safari doesn't require a user to give permission to download certain files, a fact which independent security researcher Nitesh Dhanjani predicted could lead to a "carpet-bombing" attack whereby attackers populate websites with malicious code Safari would automatically download to the desktop.
In a security advisory Microsoft says the flaw is also dependent on a vulnerability in how XP and Vista handle executable files on the desktop. Microsoft says it's not aware of any example of the flaw being exploited, but is working on the issue.
The advisory goes on to suggest, that people "restrict use of Safari as a web browser until an appropriate update is available from Microsoft and/or Apple."
Apple has not responded to our request for comment.
PC Pro's Five Biggest Stories
Is your business a social business? For helpful info and tips visit our hub.
- Windows 8.1 Update: an abject surrender
- The insane economics of Sky Now TV
- No such thing as a free app... so pay up if you want quality
- Time to outlaw crapware-laden installers
- Windows Phone 8.1 video: hands-on
- Office for iPad: key information
- Why every PC buyer owes Richard Durkin a debt of gratitude
- HTC One M8 vs Samsung Galaxy S5: 2014's big-hitters compared
- Windows XP end of life: key information
- Cut out the broadband jargon? What jargon?
- Make your mobile battery last longer
- Small steps into handling Big Data
- Nexus 5: does it really run stock Android?
- How to get broadband to a garden office
- How to write your company's IT security policy
- Raspberry Pi and Wolfram: a must-have for every child
- Could you get by with Office Web Apps?
- The best Android antivirus apps for 2014
- Headings vs headers: how to use both in Word
- Windows Server 2012 R2: how the Datacenter edition could change SMBs