Journal Journal: Firefox ANI exploit on the way - no protected mode
Determina is previewing a version of the ANI exploit that will hijack Mozilla Firefox 2 as well as Internet Explorer 7 running on Vista. At this time, Alexander Sotirov (chief reverse engineer at Determina) has said that the proof-of-concept exploit code won't be released until there is a patch available in Firefox.
What's interesting about this is the fact that Firefox doesn't have the benefit of Protected Mode under Vista, which can somewhat mitigate the damage that can be done if Internet Ex