Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

Microsoft Edge restricts IE mode after zero-day exploit

The attack unfolds in multiple stages. Once the initial zero-day vulnerability in the Chakra engine is exploited, the attacker leverages a second, unspecified vulnerability.

byAytun Çelebi
October 14, 2025
in Cybersecurity, News
Home News Cybersecurity
Share on FacebookShare on TwitterShare on LinkedInShare on WhatsAppShare on e-mail
Google Preferred Source

Microsoft is restricting access to Internet Explorer (IE) mode within its Edge browser after discovering that threat actors were exploiting zero-day vulnerabilities. The attacks leverage the Chakra JavaScript engine to gain remote code execution on target devices.

The company’s Edge security team received intelligence in August indicating a new threat vector. According to Gareth Evans, Microsoft Edge Security Team Lead, “The [Edge security] team recently received intelligence indicating that threat actors were abusing Internet Explorer (IE) mode within Edge to gain access to unsuspecting users’ devices.” The attack combines social engineering with the software exploit. Threat actors direct targets to what was described as an “official-looking spoofed website” which then prompts the user, through an interface element, to load the page in IE mode. This action triggers the exploit.

The attack unfolds in multiple stages. Once the initial zero-day vulnerability in the Chakra engine is exploited, the attacker leverages a second, unspecified vulnerability. This secondary exploit allows for privilege escalation, enabling the attacker to escape the browser’s security sandbox. After breaking out of the browser’s confines, the threat actor can take full control of the device. Microsoft did not release identifiers for the vulnerabilities involved and confirmed that the flaw in the Chakra engine remains unpatched.

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.


Microsoft Edge hits sub-300ms content load time


IE mode was initially retained in the Edge browser for legacy compatibility purposes, even after official support for Internet Explorer ended on June 15, 2022. The feature allows access to older web technologies, such as ActiveX and Flash, which a small number of business applications and government portals still use.

To mitigate the immediate risk, Microsoft has removed the simple, one-click methods for activating IE mode. The dedicated toolbar button, the context menu entry available via a right-click, and the option located in the main hamburger menu have all been disabled for general users. These changes are intended to make the activation of IE mode a more intentional user action, thereby reducing the chance of accidental or malicious use.

Users who still need to access sites with IE mode must now navigate to Settings > Default Browser > Allow. In this section, they are required to explicitly define the specific pages that are permitted to load using the Internet Explorer engine. This requirement for an approved list of websites is designed to make it significantly more difficult for attackers to succeed with their exploit. These restrictions do not apply to commercial users, who can continue to use IE mode as configured through enterprise policies. Microsoft advised all users to migrate from legacy Internet Explorer technologies to modern products for better security, reliability, and performance.


Featured image credit

Tags: Internet explorermicrosoft edge

Related Posts

“Free robots are an illusion”: Why we’ll pay for system intelligence, not delivery workers

“Free robots are an illusion”: Why we’ll pay for system intelligence, not delivery workers

June 12, 2026
How Henrique Schmaiske led Meteor.js through its biggest transformation

How Henrique Schmaiske led Meteor.js through its biggest transformation

June 12, 2026
Proven privacy: Why ‘no-log’ claims need real evidence today

Proven privacy: Why ‘no-log’ claims need real evidence today

June 12, 2026
ChatGPT hits 1 billion users as global AI adoption surges despite backlash

ChatGPT hits 1 billion users as global AI adoption surges despite backlash

June 12, 2026
Huawei launches HarmonyOS 7 developer beta with upgraded API 26

Huawei launches HarmonyOS 7 developer beta with upgraded API 26

June 12, 2026
OpenAI Codex referral program rewards users with extra rate resets

OpenAI Codex referral program rewards users with extra rate resets

June 12, 2026

LATEST NEWS

“Free robots are an illusion”: Why we’ll pay for system intelligence, not delivery workers

How Henrique Schmaiske led Meteor.js through its biggest transformation

Proven privacy: Why ‘no-log’ claims need real evidence today

ChatGPT hits 1 billion users as global AI adoption surges despite backlash

Huawei launches HarmonyOS 7 developer beta with upgraded API 26

OpenAI Codex referral program rewards users with extra rate resets

BEST AI MODELS LEADERBOARD

See the best AI models, ranked by intelligence, benchmark results, speed and token price. Find the most suitable LLMs, Text-to-Image, Image Editing, Text-to-Speech, Text-to-Video and Image-to-Video  artificial intelligence model for your tasks and business.

LATEST TOOLS

Roboto AI

Pickaxe

Pfpmaker

MindPal

Syllaby

ScreenApp

FinanceBrain

GitHub Spark

Hints

VisionStory AI

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
    • AI Models Leaderboard
  • AI tools
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • Who we are
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies to improve your experience. You can choose to accept or reject them. Visit our Privacy Policy.