Update on the IE8 exploit from TippingPoint's DVLabs,
Pwn2Own Day 2
Quote:
The big news of the day is that the MSRC (Microsoft Security Response Center) woke me up before my alarm went off this morning to let me know that they had reproduced and validated IE8 vulnerability discovered by the mysterious Nils. Of course, we can't tell you anything more than that- stay tuned for more information once Microsoft releases an update for it! I continue to be impressed by the dedication of the MSRC team- and was shocked to get the news of verification in less than 12 hours- considering the entire IE team was most likely at the MIX 2009 con down in Vegas for the official launch of IE8!
For those not keeping score, the confirmation of the IE8 vulnerability on the released bits (available just this morning!) marks the first official vulnerability in IE8!
|
Microsoft MVP | Secretary, Admin Counsel,
ASAP
Take a walk through the
"Security Garden" -- Where Everything is Coming up
Roses!
"Miles don't make a difference, Smiles do!"