Security functions added to Internet Explorer 10

Share this article:

The latest edition of Microsoft's flagship web browser, Internet Explorer 10 (IE), features two new security functions that help prevent exploits targeting memory: High Entropy Address Space Layout Randomization (HEASLR) and ForceASLR. HEASLR takes advantage of the new 64-bit address space of the Metro-style browser, which is designed to resemble a smartphone or tablet app, by assigning more bits to entropy. The ForceSLR function will allow the operating system to randomize the location of all of the modules loaded by IE 10. HEASLR will only be available in Windows 8, but Windows 7 users can access ForceASLR through an update. In a Microsoft Developer Network blog post, Forbes Higman, security program manager for Internet Explorer, said these technologies will provide the type of defense needed to block mischievous attackers. At the moment, IE 10 is available only as a consumer preview.

Share this article:

Sign up to our newsletters

More in News

Apple's iOS 7.1.1 fixes Webkit bugs, encryption bypass issue

Released Tuesday, the update prevents exploit via "triple handshake" attacks, which could allow a bypass of encryption safeguards.

'Unauthorized' media contact a fireable offense for U.S. intel employees

The new media policy states that U.S. intelligence employees who have "unauthorized" contact with the media could lose their jobs.

AOL Mail hack furthers spam campaign using spoofed accounts

AOL confirmed on Monday that it was aware of the issue and working to remediate the situation.