ADVERTISEMENT

How Microsoft’s Internet Explorer Was Unsafe Even When Unused

The now defunct web browser from Microsoft was hardly useful for surfing the internet, and lost users to Chrome.

Published
Tech News
2 min read
How Microsoft’s Internet Explorer Was Unsafe Even When Unused
i

The Quint DAILY

For impactful stories you just can’t miss

By subscribing you agree to our Privacy Policy

Microsoft's Internet Explorer (IE) has dealt with a reputation for poor security for years, now makes PCs vulnerable even if it is just installed in them, a security researcher has found.

According to researcher John Page, an unpatched exploit in the web browser's handling of MHT files (IE's web archive format), can let hackers spy on Windows users and steal their local data.

"As Windows opens MHT files using IE by default, you don't even have to run the browser for this to be a problem – all you have to do is open an attachment sent through chat or email.

"This wouldn't be an issue if it weren't for the disclosure of the flaw. Page posted details of the exploit after Microsoft reportedly declined to roll out an urgent security fix, Engadget reported on Sunday.

ADVERTISEMENT

The vulnerability affects Microsoft Windows 7, Windows 10 and Windows Server 2012 R2.

"Microsoft said a fix would be 'considered' in a future release. While that does suggest a patch is on the way, it leaves millions of users potentially vulnerable unless they either turn off Internet Explorer or point to another app that can open MHT files," the report added.

The news came at a time when Microsoft, coming to terms with the Outlook.com data breach case, reached out to some users, informing them of the hack which exposed data sent over emails to hackers who kept accessing their accounts between 1 January to 28 March.

In an email, Microsoft claimed that apart from the content of the emails including attachments, the hackers could have possibly viewed account email addresses, folder names and subject lines of the mails sent and received.

The case came to notice when the software giant discovered that the credentials of a support agent were compromised for its web mail service which led to unauthorised access into some accounts.

(At The Quint, we are answerable only to our audience. Play an active role in shaping our journalism by becoming a member. Because the truth is worth it.)

Read and Breaking News at the Quint, browse for more from tech-and-auto and tech-news

ADVERTISEMENT
Speaking truth to power requires allies like you.
Become a Member
3 months
12 months
12 months
Check Member Benefits
Read More
ADVERTISEMENT
Stay Updated

Subscribe To Our Daily Newsletter And Get News Delivered Straight To Your Inbox.

Join over 120,000 subscribers!
ADVERTISEMENT
More News
×
×