Skip to main content

Internet Explorer has a zero-day bug that Microsoft needs to fix

Internet Explorer is pre-installed on every Windows PC, even though it’s been superseded by Microsoft’s new Edge browser in terms of long-term support. The reason is simple: Many organizations use the archaic browser for legacy applications, and so Microsoft has had to keep it around but isn’t spending a great deal of time on improving it. Unfortunately, according to one security firm, Internet Explorer has a serious flaw that’s leaving it open to malware attacks.

ZDNet reports on the zero-day bug, which is coming from Chinese antivirus software company Qihoo 360 Core. The company’s security research team claim that the bug uses a Microsoft Office document that has a vulnerability installed that opens a web page that downloads a piece of malware. According to the researchers, the malware exploits a user account control (UAC) bypass attack, and it also utilizes file steganography, which is the technology of embedding a message, image, or file within another message, image, or file.

Qihoo 360 also reported on the bug via Twitter:

We uncovered an IE 0day vulnerability has been embedded in malicious MS Office document, targeting limited users by a known APT actor.Details reported to MSRC @msftsecresponse

— 360 Core Security (@360CoreSec) April 20, 2018

Microsoft responded to ZDNet’s request for comment with the following rather generic statement:

“Windows has a customer commitment to investigate reported security issues, and proactively update impacted devices as soon as possible. We recommend customers use Windows 10 and the Microsoft Edge browser for the best protection. Our standard policy is to provide remediation via our current Update Tuesday schedule.”

The following image shows a basic flowchart of how the bug is executed on an affected system. Beyond this, there is not a great deal of information on the flaw and little else to go on in determining just how infected systems are impacted. Until Microsoft fixes the bug, of course, it will remain an issue for Windows users.

Qihoo 360

Apparently, the attack is being conducted globally by an “advanced persistent threat (APT) group.” That implies a group of hackers with some capabilities that can conduct such a sophisticated attack. Unfortunately, there is not much users can do at this point except follow the usual security advice: Keep your systems and software updated, make sure you’re using sufficient malware protection, and don’t open any files unless you’re absolutely certain that it’s from a trusted source and that it was sent on purpose.

Mark Coppock
Mark has been a geek since MS-DOS gave way to Windows and the PalmPilot was a thing. He’s translated his love for…
Is Microsoft’s new PC cleaner just an Edge ad in disguise?
The new PC Manager app on a Windows 11 desktop

Microsoft really wants you to use the Edge browser, so much so that the company has tied it to PC optimization in a new settings app. Microsoft PC Manager does what you could always do by opening the settings menu, but the new app also prompts you to set Edge as your default browser.

Screenshots of the new app were posted on Twitter by @ALumia_Italia and appears to show what is a public beta of the app. The app performs basic maintenance functions. You can check startup apps, check for updates, run disk cleanup, and other minor optimizations.

Read more
Beware: Hackers are using a clever Microsoft Edge malvertising scam
The Microsoft Edge browser is open on a Surface Book 2 in tablet mode.

If you're still using Microsoft Edge, you need to beware -- a new malvertising campaign has just been discovered, and if you fall victim to it, your PC might be at risk.

According to Malwarebytes, the attackers are abusing Microsoft Edge's News Feed feature to target their victims. Here's what we know about this clever new scam.

Read more
Microsoft Edge has a new trick for increased performance
Edge Browser

The Microsoft Edge browser is now even more optimized and has a bit higher performance on Windows. That's thanks to changes in version 102 of the browser, which can now automatically compress disk caches.

Microsoft talked about this in a technical post, explaining that its overall goal is to "deliver the best performing browser possible on Windows and other platforms." In what seems like a shot at Google Chrome, Microsoft also mentioned that they're aware that when a web browser consumed too many resources, the system can be slowed down. That's where disk caching comes into play.

Read more