Friday, October 27, 2006

Security framework

Internet Explorer uses a zone-based security framework, which means that sites are grouped based upon certain conditions. It allows the restriction of broad areas of functionality, and also allows specific functions to be restricted.

Patches and updates to the browser are released periodically and made available through the Windows Update service, as well as through Automatic Updates. Although security patches continue to be released for a range of platforms, most recent feature additions and security improvements are released for Windows XP only.

Recent versions of Internet Explorer provide Download Monitoring and Install Monitoring allowing users the choice of whether or not to download and install executables, in two stages. This helps to prevent installation of malware. Executable files downloaded using Internet Explorer are marked by the operating system as being potentially unsafe, and will prompt the user to confirm they want to run the executable every time, until the user confirms the file is "safe".