• 1 Votes
    4 Posts
    1k Views
    PhlipElderP

    The engine may end up being an "Enterprise Mode" like IE I think?

    Edge as a browser works well but with a few show stoppers that killed any further usage for us:
    1: Downloads mysteriously won't start or just plain stop for no reason.
    2: Edge ate my favourites way too many times.

    The containerized Edge, Application Guard I think(?), is a great idea. If Edge was as good as they had hoped it would provide a fantastic sandbox experience to protect users from drive-by attacks and bad GET commands from e-mail clients.

    At least we are not getting stuck with the legacy ActiveX that keeps rearing its head every once in a while because of IE. 😛

  • Microsoft Edge comes in last at Pwn2Own

    Locked News
    5
    3 Votes
    5 Posts
    1k Views
    gjacobseG

    thread-lock.jpg

    For merge

  • Edge the Big Loser at Pwn2Own

    News
    9
    2 Votes
    9 Posts
    2k Views
    mlnewsM

    @Tim_G said in Edge the Big Loser at Pwn2Own:

    The most impressive exploit by far, and also a first for Pwn2Own, was a virtual machine escape through an Edge flaw by a security team from “360 Security.” The team leveraged a heap overflow bug in Edge, a type confusion in the Windows kernel, and an uninitialized buffer in VMware Workstation for a complete virtual machine escape.
    The team hacked its way in via the Edge browser, through the guest Windows OS, through the VM, all the way to the host operating system. This impressive chained-exploit gained the 360 Security team $105,000.

    I thought VMWare fixed the possibility of this from being possible? This is now the third time I've heard of VM escape on the VMWare platform.

    I wonder who is tracking VM escape rates.

  • Goodbye Java Plug-ins

    News
    23
    5 Votes
    23 Posts
    4k Views
    DashrenderD

    @scottalanmiller said:

    @johnhooks said:

    Right, but then they don't update it? How can you have enough resources to create an application and then not enough to update it with the platform it's built on?

    Why waste money updating something if your customers don't leave you anyway? That's not good business.

    I hate your logic sometimes 😉

  • 1 Votes
    17 Posts
    5k Views
    Reid CooperR

    Most of those things, like Java for an HP ILO, can be isolated to networks that are not on the Internet or are highly protected. They don't need to be on general use machines.