Silicon Shecky

Infosec Practitioner

  • About
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Links
    • Infosec
      • Burbsec
      • Infosec Exchange Mastodon
      • Hacks4Pancakes Blog
      • Krebs On Security
      • Bleeping Computer
  • Archives

Connect

  • Bluesky
  • LinkedIn
  • Mastodon
  • RSS
  • Twitter

[footer_backtotop]

Copyright © 2025 ·Sixteen Nine Pro Theme · Genesis Framework by StudioPress · WordPress

Yet another IE only problem…

July 7, 2009 By Michael Kavka Leave a Comment

Well, it seems that another problem with Active X Video has gone Zero Day. Drive by (click by?) attacks are now exploiting the hole in the MS972890 advisory. This only affects IE, and only XP and 2003, so yes it is rather limited, but XP and 2003 are still very prevalent in the world.

The advisory does have a link on how to work around the vulnerability with a kill switch setting on the DLL file. Just shows another reason why I would not use IE if the web site does not require it.

Filed Under: General Tagged With: Active X Video, IE, MS97280, Server 2003, Windows XP

RSS Taggart Institute Intel Feed

  • Britain eyes satellite laser warning system and carrier-launched jet drones October 7, 2025 Dan Robinson
  • Understanding the Cybersecurity Information Sharing Act (CISA) Expiration October 7, 2025 brent.kelley@guidepointsecurity.com
  • UK Home Office opens wallet for £60M automated number plate project October 7, 2025 Lindsay Clark
  • Credential stuffing: £2.31 million fine shows passwords are still the weakest link October 7, 2025 Eirik Salmi
  • Businesses fear AI is exposing them to more attacks October 7, 2025 Eric Geller
  • A Snapback Solution for Ukraine October 7, 2025 Samuel Charap
  • Pair of lawsuits challenging Trump's targeting of Chicago get first hearings October 7, 2025 Chris Geidner
  • ISC Stormcast For Tuesday, October 7th, 2025 https://isc.sans.edu/podcastdetail/9644, (Tue, Oct 7th) October 7, 2025
  • Developing: Salesforce data leak site being seized? Looks like it. October 7, 2025 Dissent
  • Oracle zero-day defect amplifies panic over Clop’s data theft attack spree October 6, 2025 Matt Kapko

Browse by tags

Active Directory Android Antivirus Apple Beta Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches Rants SBS SBS 2008 Security Security Patches Server SMB Software Support Surface TechEd Tweets Ubuntu Verizon Virus Vista vulnerabilities Windows Windows 7 Windows 8 XP