SEC504: Hacker Tools, Techniques, and Incident Handling

Experience SANS training through course previews.
Learn MoreLet us help.
Contact usBecome a member for instant access to our free resources.
Sign UpWe're here to help.
Contact UsThere is substantial industry documentation on web browser security because the web browser is currently a frequently used vector of attack. This paper investigates current literature discussing the threats present in today's environment as well as weaknesses of the browser, including PKI and plugins. To help the organization harden the browsers deployed in its environment, comparative studies of browser security ratings are reviewed and hardening suggestions for Internet Explorer and Firefox, the most popular browsers, are provided. Security Enhancements in Internet Explorer 8 are also identified. Options for browsing the internet via a bastion host are explored as an advanced method for enhancing security. Based on current literature it is safe to say no web browser is truly secure. By adapting and implementing these suggestions most organizations will be more resistant to compromise.