Flaws in Microsoft Internet Explorer found
By Our Convergence Bureau | 13 Aug 2002
San Francisco: Security researchers claim that they have found serious flaws in Microsoft’s Internet Explorer (IE) browser and in PGP, a widely-used data scrambling programme, that could expose credit card and other sensitive information of Internet users.
The IE problem has been around for at least five years and could allow an attacker to intercept personal data when a user is making a purchase or providing information for e-commerce purposes, says Mike Benham, an independent security researcher based in San Francisco.
“If you ever typed in credit card information to a Secure Sockets Layer (SSL) site, there’s a chance that somebody has intercepted it,” he adds. “IE fails to check the validity of digital certificates used to prove the identity of websites, allowing for an undetected, man-in-the-middle attack.”
Digital certificates are typically issued by trusted certificate authorities, such as VeriSign, and used by websites in conjunction with the SSL protocol for encryption and authentication. Anyone with a valid digital certificate for any website can generate a valid certificate for any other website, says Benham. “I would consider this to be incredibly severe.”
Cryptography expert Bruce Schneier, co-founder and chief technology officer at Counterpane Internet Security, a California-based network monitoring firm, agrees: “This is one of the worst cryptographic vulnerabilities I’ve seen in a long time. What this means is that all the cryptographic protections of SSL don’t work if you’re a Microsoft IE user.”
Latest articles
Featured articles
AI war shifts gears: chips, drones reshape global power
By Cygnus | 27 Mar 2026
AI competition is shifting as chips, drones and supply chains reshape global power, impacting tech, defense and business strategies.
Trump’s Iran strike delay lifts markets, but risks remain elevated
By Axel Miller | 24 Mar 2026
Trump’s Iran strike delay eased market fears, sending oil lower and lifting Sensex. Risks remain as geopolitical tensions continue.
The rise of the ‘ghost executive’: how autonomous AI agents are entering the C-suite
By Cygnus | 17 Mar 2026
Autonomous AI agents are influencing business decisions and reshaping leadership structures as companies adopt agentic AI systems in 2026.
The sky is closing: The end of the global crossroads
By Axel Miller | 16 Mar 2026
Middle East airspace disruptions are forcing airlines to reroute global flights, raising costs and reshaping aviation networks in 2026.
Living in the “New Gulf”: how conflict is reshaping cities and infrastructure
By Cygnus | 16 Mar 2026
Gulf states are redesigning infrastructure, air defenses and aviation networks as regional tensions reshape urban resilience strategies.
The Petro-Tech Pivot: Why Your Next Phone Is Built on Shifting Sands
By Cygnus | 12 Mar 2026
Rising crude prices are reshaping electronics manufacturing as petrochemical costs drive pressure across the global tech supply chain.
Hardened compute: The rise of the data bunker
By Axel Miller | 11 Mar 2026
Explore how AI demand and geopolitical risk are driving investment in fortified data centers worldwide.
The GitHub insurgency: Open-source AI vs. the state
By Cygnus | 11 Mar 2026
How OpenClaw is reshaping debates around AI governance, decentralization and state oversight in 2026.
The 35-minute revolution: How China’s electric trucks outpaced the West
By Cygnus | 10 Mar 2026
Chinese electric trucks from BYD and Windrose are entering Europe with faster charging and lower costs. Here’s how legacy manufacturers are responding.


