Microsoft Internet Explorer enables JavaScript to be disabled

At of Patch Tuesday, Microsoft has added a new option to Windows that allows system administrators to disable JScript in Internet Explorer.

The JScript scripting engine is a legacy component originally included in Internet Explorer 3.0 in 1996 and Microsoft's dialect of the ECMAScript standard (the JavaScript).

Over the years, malicious users have realized that they could attack JScript, as Microsoft did not update it frequently.

The CVE-2018-8653, CVE-2019-1367, CVE-2019-1429 and CVE-2020-0674 are some of the recent 0days for JScript that Microsoft has encountered over the past three years.

Now, 11 years later, Microsoft is finally giving system administrators a way to disable JScript by default.

According to Microsoft, the Patch Tuesday October 2020 brings new keys to the Windows registry that system administrators can change to block the jscript.dll file.

How can this happen:

Open run with search, and type regedt32 or regedit.
To turn off JScript in Internet Zone, you need to find the following key in Registry Editor:

HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Internet Settings \ Zones \ 3 \ 140D

Locate the following subkey in Registry Editor:

HKEY_LOCAL_MACHINE \ SOFTWARE \ Microsoft \ Windows \ CurrentVersion \ Internet Settings \ Zones \ 4 \ 140D

Right-click the registry subkey, and then click Modify.
In Edit DWORD (32-bit) value, type 3.
Click OK, and then restart Internet Explorer.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.082 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).