Microsoft offers fix for exploit that could hijack PCs running old versions of IE

Microsoft Logo 2 (Verge Stock)

Microsoft is today resolving a nasty vulnerability that targets old versions of Internet Explorer and allowed a user's PC to be overtaken if the browser was steered to select malicious websites. After it was initially found last month, Microsoft offered up a few workarounds and a standalone patch to avoid the flaw, which threatens versions 6, 7, and 8 of Internet Explorer. But today's security update should eliminate the vulnerability for good. Microsoft says that to date, just a "limited number" of customers have fallen victim to the zero-day exploit, but admits " the potential exists that more customers could be affected in the future." As such, the update has been designated critical and will be automatically installed for users that have enabled Automatic Updates on their PCs. Of course, this is also another reminder to keep your browser updated — assuming your situation permits it. IE 9 and 10 were protected from this particular vulnerability from the very beginning.

The Verge
Log In Sign Up

Log In Sign Up

Forgot password?

We'll email you a reset link.

If you signed up using a 3rd party account like Facebook or Twitter, please login with it instead.

Forgot password?

Try another email?

Almost done,

By becoming a registered user, you are also agreeing to our Terms and confirming that you have read our Privacy Policy.



Choose an available username to complete sign up.

In order to provide our users with a better overall experience, we ask for more information from Facebook when using it to login so that we can learn more about our audience and provide you with the best possible experience. We do not store specific user data and the sharing of it is not required to login with Facebook.