Monday, November 15, 2004

Spoofed urls in IE: a vulnerability -- or an issue?

Microsoft is rejecting claims by a German security researcher that a spoofing technique discovered in Internet Explorer is a security vulnerability -- even as the company acknowledges it as a security issue. Whatever you want to call it, Outlook Express is also affected. However, Windows XP Service Pack 2 is unaffected. Neither is Mozilla's Firefox. The researcher’s advice: Right-click on links to check their real destination.