Homeland Security Urges Stop Using “Internet Explorer”

A branch of the US Department of Homeland Security is telling Americans to stop using Internet Explorer due to a vulnerability that allows hackers to remotely execute codes on victim’s computers as they surf the web.The United States Computer Emergency Readiness Team (CERT) warns that all versions of Internet Explorer from 6 to 11 can be affected, although those responsible appear to be currently targeting IE9 and IE10, according to FireEye Research Labs, the California-based Internet security software company that first exposed the vulnerability.

Link to CERT: http://www.us-cert.gov/ncas/current-activity/2014/04/28/Microsoft-Internet-Explorer-Use-After-Free-Vulnerability-Being

Computer security experts warn that no fix has been found, and they urge people to avoid using Internet Explorer until the security is sound.

WHAT DOES IT DO?

Over the weekend, Microsoft acknowledged “limited, targeted attacks” that exploited a vulnerability in the browser in order to remotely run code through a user’s browser, forcing the user to view a website crafted by the attacker instead.

FROM MICROSOFT: Vulnerability in Internet Explorer could allow remote code execution.

Rather than targeting a specific victim one by one, the hackers inject code into a website a victim may visit. That code then infects the victim’s computer.

According to FireEye, the exploit takes advantage of a previously unknown “use-after-free” vulnerability and a well-known Adobe Flash exploitation technique to circumvent Windows security protections.

WHAT CAN BE DONE?

No practical solution has been identified yet, but the Microsoft Enhanced Mitigation Experience Toolkit can help prevent the vulnerability from being exploited; however, older versions of Windows including Windows XP and Windows Server 2003 won’t be protected in the same way more modern versions will.

Although the bug does not compromise the security of Adobe Flash, FireEye said the attack cannot work without it and said users can disable the Flash plug-in within IE to protect themselves; however, that will render many popular websites unusable.

Symantec is also offering XP users tools to help ward off attack.

Staff Writer

Recent Posts

Dragons pick up road win against Rebels

Blue Ridge, Ga -- A 515 battle took place on Friday, September 4th as the…

4 days ago

Dragons battle former region foe in home opener

Jasper, GA -- The Pickens Dragons were home for the first time during the 2026…

2 weeks ago

Pickens County Sheriff’s Office Arrest Report 8/16 – 8/23/2026

Arrest report and photos provided by the Pickens County Sheriff’s Office. The Georgia Open Records…

2 weeks ago

GBI Arrests Former Jasper Police Officer on Multiple Charges

JASPER, Ga. — A former Jasper Police Department officer has been arrested on multiple charges…

2 weeks ago

Dragons fall in high scoring season opener

Kennesaw, Ga -- No more scrimmages as it was time to kick off the 2026…

3 weeks ago

Pickens County Sheriff’s Office Arrest Report 8/9 – 8/16/2026

Arrest report and photos provided by the Pickens County Sheriff’s Office. The Georgia Open Records…

3 weeks ago