Microsoft Corp issued an interim security update Friday to protect users of its nearly ubiquitous Internet Explorer browsers from a new technique for spreading viruses.
The update does not entirely fix the flaw that makes the spread possible, but it changes settings in Windows operating systems to disable hackers' ability to deliver malicious code with it.
The security measure came in response to last week's discovery of a computer virus designed to steal valuable information like passwords. Though its outbreak was mild, security experts said the technique for spreading it was novel and could be used to send spam or launch broad attacks to cripple the Internet.
Hackers had converted hundreds and possibly thousands of Web sites into virus transmitters by first hiding malicious code using a vulnerability with Microsoft's software for operating Web sites.
A fix for it had been issued in April but was not universally applied.
Two other flaws in Microsoft products allowed hackers to direct Internet Explorer browsers to automatically run the virus when visiting an infected site.
Though one of those flaws remains unfixed, Friday's setting changes thwart any attack by prohibiting a Web application from writing files -- such as the virus code -- onto users' computers.
Stephen Toulouse, a security program manager at Microsoft, said the company still was working on a comprehensive patch to fix vulnerabilities with Internet Explorer, but the settings change should protect users from the immediate threat.
The software update covers Windows XP, Windows Server 2003 and Windows 2000, and Microsoft was working on ones for older systems.
The update will also be included with a major Windows XP upgrade, called Service Pack 2, later this summer.
Toulouse said the new Service Pack will include additional protections.
After installing Friday's update, users should be able to lower their security settings from the "high" one initially recommended as a stopgap, he said.
Russ Cooper, a senior researcher at TruSecure Corp, welcomed Friday's update, but said it should have come sooner than a week.
"It would have taken a couple of hours to put it together as a package, and [the testing] process can take a day or two," Cooper said.
But Toulouse said that given the broad user base for Windows and Internet Explorer, even a problem affecting less than 1 percent of users potentially hurts millions of customers.
He said the settings could potentially affect legitimate applications used internally by Web developers and corporate networks, and special instructions were available to address those cases.
The update will be automatically installed if computers are set to receive it.
It is also available at http://windowsupdate.microsoft.com.
Microsoft shares fell US$0.06 to close at US$28.57 Friday on the NASDAQ Stock Market.
BUSINESS UPDATE: The iPhone assembler said operations outlook is expected to show quarter-on-quarter and year-on-year growth for the second quarter Hon Hai Precision Industry Co (鴻海精密) yesterday reported strong growth in sales last month, potentially raising expectations for iPhone sales while artificial intelligence (AI)-related business booms. The company, which assembles the majority of Apple Inc’s smartphones, reported a 19.03 percent rise in monthly sales to NT$510.9 billion (US$15.78 billion), from NT$429.22 billion in the same period last year. On a monthly basis, sales rose 14.16 percent, it said. The company in a statement said that last month’s revenue was a record-breaking April performance. Hon Hai, known also as Foxconn Technology Group (富士康科技集團), assembles most iPhones, but the company is diversifying its business to
Apple Inc has been developing a homegrown chip to run artificial intelligence (AI) tools in data centers, although it is unclear if the semiconductor would ever be deployed, the Wall Street Journal reported on Monday. The effort would build on Apple’s previous efforts to make in-house chips, which run in its iPhones, Macs and other devices, according to the Journal, which cited unidentified people familiar with the matter. The server project is code-named ACDC (Apple Chips in Data Center) within the company, aiming to utilize Apple’s expertise in chip design for the company’s server infrastructure, the newspaper said. While this initiative has been
GlobalWafers Co (環球晶圓), the world’s No. 3 silicon wafer supplier, yesterday said that revenue would rise moderately in the second half of this year, driven primarily by robust demand for advanced wafers used in high-bandwidth memory (HBM) chips, a key component of artificial intelligence (AI) technology. “The first quarter is the lowest point of this cycle. The second half will be better than the first for the whole semiconductor industry and for GlobalWafers,” chairwoman Doris Hsu (徐秀蘭) said during an online investors’ conference. “HBM would definitely be the key growth driver in the second half,” Hsu said. “That is our big hope
The consumer price index (CPI) last month eased to 1.95 percent, below the central bank’s 2 percent target, as food and entertainment cost increases decelerated, helped by stable egg prices, the Directorate-General of Budget, Accounting and Statistics (DGBAS) said yesterday. The slowdown bucked predictions by policymakers and academics that inflationary pressures would build up following double-digit electricity rate hikes on April 1. “The latest CPI data came after the cost of eating out and rent grew moderately amid mixed international raw material prices,” DGBAS official Tsao Chih-hung (曹志弘) told a news conference in Taipei. The central bank in March raised interest rates by