Jun 30, 2007

Internet Explorer Security

Many security holes are exploited when Internet Explorer loads a renegade web page. Here are some security settings to help lock down your browser. Do this in addition to the security tips we list above. Always write down your original settings so you revert to them.
Lock down your security zone, this may cause some websites to display warning prompts - In Tools Menu - Internet Options - Security TabClick on Internet icon and Custom Level.. button(Some settings are only present when Service Pack 2 or newer is installed)
Run components not signed with Authenticode --> Disable
Run components signed with Authenticode --> Enable
Download Signed ActiveX controls --> Prompt
Download unsigned ActiveX controls --> Disable
Initialize and script ActiveX controls not marked as safe --> Disable
Run ActiveX controls and plug-ins --> Disable
Script ActiveX controls marked safe for scripting --> Disable
Automatic prompting for ActiveX contrls --> Disable
Binary and script behaviors --> Disable
File download --> Disable
Font download --> Prompt
Automatic prompting for file downloads --> Disable
Microsoft VM --> Disable Java
Allow data sources across domains --> Disable
Allow Meta Refresh --> Disable
Display Mixed content --> Prompt
Don't Prompt for client certificates --> Disable
Drag and drop or copy and paste files --> Prompt
Installation of desktop items --> Prompt
Launching programs and files in an IFRAME --> Prompt
Navigate sub-frames across different domains --> Prompt
Software channel permissions --> High safety
Submit nonencrypted form data --> Prompt
Userdata persistence --> Enable
Allow Scripting of IE Webbrowser control --> Disable
Allow script-initiated windows without size or position constraints --> Disable
Allow Web pages to use restricted protocols for active content --> Disable
Open files based on content, not file extension --> Enable
Use popup blocker --> Enable
Web sites in less privileged web content zone can navigate into this zone --> Disable
Active scripting --> Prompt
Allow paste operations via script --> Prompt
Scripting of Java applets --> Prompt
Logon --> prompt for user name and password
Click OK, OK, OK
In Tools Menu - Internet Options - Advanced Tab
Enable Check for publisher's certicate revocation, Enable Empty Temporary Internet Files when browser is closed, Enable Check for signatures on downloaded programs, uncheck Enable Install on Demand (Other)

In Tools Menu - Manage Add-ons... (XP Service pack 2 or newer)
You can Disable Add-ons that plug into Internet Explorer. Spyware has been know to install by this option.
Dropmyrights is free software to prevent Internet Explorer and Outlook Express from having the power to do anything to your computer.
Switching to the Firefox browser, may give you better security.

0 Comments:

Post a Comment



 

blogger templates | Make Money Online