Great Circle Associates Firewalls
(February 1997)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: RE: [NTSEC] ActiveX, MSIE and Quicken
From: long-morrow @ CS . YALE . EDU
Date: Mon, 10 Feb 1997 13:40:20 -0500 (EST)
To: firewalls @ GreatCircle . COM
Cc: mike . starkweather @ anheuser-busch . com

"Starkweather, Mike" <mike .
 starkweather @
 anheuser-busch .
 com> wrote:
>Using the firewall to filter ActiveX and Java is like throwing out the 
>baby with the bath water.  This sounds more like a macro virus than a 
>Internet exploit.  Wouldn't it be better to treat it at the desktop 
>instead of the firewall?

While Java applets can be run in a crippled "sandbox" environment I
am not aware that any such "sandbox" exists for ActiveX apps. Are you?

ActiveX apps generally get complete access to your machine under Windows 95.

This is tempered a bit under Windows NT but ActiveX apps still get the
same level of privilege(s) as other processes running as your userid
are granted -- w.r.t. access to local files, network I/O, hardware, etc.

For more information there is an article on ActiveX as a virus in the
Feb 3rd Network World (available to members of the NWFusion Web site via
URL http://www.nwfusion.com/ and DocFinder: 0526):

	"ActiveX marks new virus spot" by Ellen Messmer 
		[and Carol Sliwa in one online version of the article]

- Morrow


Indexed By Date Previous: Home-grown vs. Turn-Key Firewalls
From: gvc @ ocsystems . com (G. Vincent Castellano)
Next: Window NT Challenge/Response through Firewall/Proxies?
From: dZothMuellarg <zot @ crl . com>
Indexed By Thread Previous: Re: [NTSEC] ActiveX, MSIE and Quicken
From: Adam Shostack <adam @ homeport . org>
Next: RE: [NTSEC] ActiveX, MSIE and Quicken
From: "A. Ömer Köker" <omer @ superonline . net>

Google
 
Search Internet Search www.greatcircle.com