IE bypasses Zonealarm

IE bypasses Zonealarm

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
IE bypasses Zonealarm Antonicus 08-28-2007
Posted by Antonicus on August 28, 2007, 1:48 am
If you were  Registered and logged in, you could reply and use other advanced thread options
I have Zonealarm Version 7 and use Opera and Firefox exclusively on
XP.

However recently I brought up the IE browser which is hidden in
Wordpad. ( Click Help Topics in Wordpad, Click the Question Mark top
left and click jump to URL)

I was able to connect to www.aliceinvideoland.co.nz and use its
search functions( even though there was a specific block on " Mobile
code" Zonealarms name for a mix of Javascript, vbscript, Java and
Active X)

Opera and Firefox were unable to get through this block to operate the
search function as one would expect.

When this block was removed Firefox and Opera could then access the
site to use the search function.

This implies that this embedded IE is able to do an end run around
firewalls even though the Firewall is specifically set to black code
from a specific site.

I must admit to be most unpleasantly surprised when IE broke security
in this fashion.


Posted by on August 29, 2007, 9:07 am
If you were  Registered and logged in, you could reply and use other advanced thread options
It is actually Microsoft HTML Help Executable (hh.exe) rather than
Wordpad or Internet Explorer that is bypassing your security settings.
You can verify this by opening any compiled help (*.chm) file. I had
not known that this could be used to bypass Zonealarm, but it has long
been a security concern in Citrix/Terminal Services environments.

Regards,

J Wolfgang Goerlich

> I have Zonealarm Version 7 and use Opera and Firefox exclusively on
> XP.
>
> However recently I brought up the IE browser which is hidden in
> Wordpad. ( Click Help Topics in Wordpad, Click the Question Mark top
> left and click jump to URL)
>
> I was able to connect towww.aliceinvideoland.co.nz and use its
> search functions( even though there was a specific block on " Mobile
> code" Zonealarms name for a mix of Javascript, vbscript, Java and
> Active X)
>
> Opera and Firefox were unable to get through this block to operate the
> search function as one would expect.
>
> When this block was removed Firefox and Opera could then access the
> site to use the search function.
>
> This implies that this embedded IE is able to do an end run around
> firewalls even though the Firewall is specifically set to black code
> from a specific site.
>
> I must admit to be most unpleasantly surprised when IE broke security
> in this fashion.



Similar ThreadsPosted
Re: IE bypasses Zonealarm August 28, 2007, 2:17 am
Re: IE bypasses Zonealarm August 30, 2007, 3:00 am
WMP & ZONEALARM October 24, 2005, 4:52 pm
ZoneAlarm July 16, 2008, 1:26 pm
ZoneAlarm Configuration Help June 21, 2005, 1:51 pm
O.T. New version of ZoneAlarm Security Suite June 5, 2006, 3:48 pm
Will the ZoneAlarm Suite or Kaspersky fit on my system? July 14, 2006, 12:52 am
Re: FIX for ZoneAlarm & KB951748 issue released July 10, 2008, 11:54 am
RE: FIX for ZoneAlarm & KB951748 issue released July 12, 2008, 12:32 pm
Re: FIX for ZoneAlarm & KB951748 issue released July 12, 2008, 1:46 pm

The site map in XML format XML site map

Contact Us | Privacy Policy