If you don’t need Silverlight (or other plugins), simply remove it altogether as that will help to reduce your surface of attack.
We can expect this CVE to be integrated into other exploit kits soon, so it is important to make sure you patch all your machines now.Įven if you don’t watch Netflix, you may have installed Silverlight in the past and forgotten about it.
Please ensure that you are running the latest version available (3.0) and that it is set to install updates automatically:
Enters CloudBrowse, an iPhone app available in the US App Store which enables browsing full Flash-enabled websites via a shared web browser on a remote server. There is currently no way to get Flash on your iDevice, not even for the jailbroken iPad, iPhone or iPod touch. Varun Malhotra If my post solves your problem could you mark the post as Answered or Vote As Helpful if my post has been helpful for you. Browse Flash Websites on your iPhone and iPad No Jailbreak Req. Apple has also restricted the use of Silverlight on the iPhone. However, those that already have and older version of Silverlight can still watch Netflix and may not be aware that their computers are at risk. Mobile Safari on the iPad will not support or play Microsoft Silverlight content.
Just follow the instructions to get started,” prompted Netflix.įortunately, those that do not have the plugin yet will be redirected to download the latest (and safe) version.
“If you do not already have Microsoft Silverlight plug-in installed, you will be prompted to download and install the free plug-in for your web browser. If you want to watch Netflix on your PC, you will need to use Silverlight. That’s about 40 million potential victims for the Silverlight exploit in Angler EK. There are seven alternatives to Microsoft Silverlight for a variety of platforms, including Windows. The Silverlight web plugin is not installed by default but is required to view content on certain websites.Īs pointed out by Timo Hirvonen, Netflix, which has 40 million subscribers, requires Silverlight for its paid streaming video service. Microsoft Silverlight is described as 'Silverlight is a development platform by Microsoft for creating rich media applications and business applications for the Web, desktop, and mobile devices' and is a popular app in the Web Browsers category. If the conditions are right, a specially crafted library is triggered to exploit the Silverlight vulnerability.Īs with all exploit kits, leveraging vulnerabilities is just an intermediary step for the real motive: pushing malware to the victims’ machine. It's the time of year when one might wonder what happened to that avuncular family figure whose existence was so reliably dull they passed into history almost forgotten - a little like Db2, IBM's flagship relational database that has faded from users' collective memory.īig Blue's system of choice for its mainframes and big Unix/Linux boxes is still very much alive and kicking and has even delivered a smattering of news in recent weeks, with a high profile attendee at the early December International Db2 Users Group European Conference telling us that select users were told of the new "Db2u", a set of containers for Db2 aimed at users exploring or working with the database in the cloud.Ĭonference speaker, Db2 DBA, and commentator Ember Crooks had posted earlier this year that "db2u sounds amazing to me" and that "db2u, conceptually, is a nearly cloud-native way of doing a relational database management system." But she also pointed out that "the problem I run into is that db2u is only available on RedHat OpenShift.Upon landing on the exploit page, the Angler exploit kit will determine if Silverlight is installed and what version is running. It will include support for H.264 Smooth Streaming - H.264 was added in version 3.0 of Silverlight last year - Smooth Multicast for the delivery of Smooth Streaming over multicast networks, the ability to deliver content on low-latency networks, and Microsoft's PlayReady digital rights management. Meanwhile, the company has revealed planned features for IIS Media Services 4. The company said it's working with Intel and Broadcom to put Silverlight on embedded chips in devices used in set-top-boxes, Blu-ray DVD players and internet-connected TVs. He noted the matter is "not entirely in our control" - a frustration Microsoft's rival Adobe knows only too well.īut Microsoft is taking steps to ensure that plenty of other consumer devices can become Silverlight clients that are capable of receiving movies and music written and encoded for its Flash challenged and that are served up using IIS Media Services. Guthrie told The Reg that Microsoft has a "good relationship" with Apple on the Mac, but there's nothing to announce about Silverlight on the iPad or iPhone.