Linked by Thom Holwerda on Sat 31st May 2008 18:25 UTC, submitted by Jaikrishnan Janardhanan
Thread beginning with comment 316409
To view parent comment, click here.
To read all comments associated with this story, please click here.
To view parent comment, click here.
To read all comments associated with this story, please click here.
There is no evidence this is a zero day attack, and that anybody cares about [attacking] Safari with it's marketshare less than Firefox. Secondly the exploit goes hand in hand with an *old* still unpatched IE flaw.
There's still that zero day flash exploit going around. If anything, don't worry about Safari, make sure you have Flash turned off, and if at all possible, don't use Windows 






Member since:
2005-07-06
Trying new things is usually a very good idea. However, in this particular case, you might want to put the experiment off for a while - a design flaw in Safari on Win32 opens a hole for exploiting a vulnerability in Internet Explorer. I strongly advise you avoid Safari/Win32 until Apple and/or Microsoft issue a patch.
References:
http://www.oreillynet.com/onlamp/blog/2008/05/safari_carpet_bomb.ht...
http://aviv.raffon.net/2008/05/31/SafariPwnsInternetExplorer.aspx
http://www.microsoft.com/technet/security/advisory/953818.mspx