Close Menu
TechurzTechurz
    What's Hot

    Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy

    July 28, 2026

    Cursor makes its biggest India push yet ahead of SpaceX acquisition with localized pricing

    July 28, 2026

    Antares raises $470M to build nuclear reactors for the US military

    July 27, 2026
    X (Twitter) Pinterest YouTube LinkedIn WhatsApp
    Tech Pulse
    • Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy
    • Cursor makes its biggest India push yet ahead of SpaceX acquisition with localized pricing
    • Antares raises $470M to build nuclear reactors for the US military
    • Ilya Sutskever’s Safe Superintelligence partners with Nvidia to scale its AI research
    • Enigma raises $70M to make controlling a robot as easy as adjusting the volume
    X (Twitter) Pinterest YouTube LinkedIn WhatsApp
    TechurzTechurz
    • Home
    • Tech Pulse
    • Future Tech
    • AI Systems
    • Cyber Reality
    • Disruption Lab
    • Signals
    TechurzTechurz
    Home - Cyber Reality - Microsoft Locks Down IE Mode After Hackers Turned Legacy Feature Into Backdoor
    Cyber Reality

    Microsoft Locks Down IE Mode After Hackers Turned Legacy Feature Into Backdoor

    TechurzBy TechurzOctober 14, 2025Updated:May 10, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Microsoft Locks Down IE Mode After Hackers Turned Legacy Feature Into Backdoor
    Share
    Facebook Twitter LinkedIn Pinterest Email


    Oct 13, 2025Ravie LakshmananBrowser Security / Windows Security

    Microsoft said it has revamped the Internet Explorer (IE) mode in its Edge browser after receiving “credible reports” in August 2025 that unknown threat actors were abusing the backward compatibility feature to gain unauthorized access to users’ devices.

    “Threat actors were leveraging basic social engineering techniques alongside unpatched (0-day) exploits in Internet Explorer’s JavaScript engine (Chakra) to gain access to victim devices,” the Microsoft Browser Vulnerability Research team said in a report published last week.

    In the attack chain documented by the Windows maker, the threat actors have been found to trick unsuspecting users into visiting an seemingly legitimate website and then employ a flyout on the page to instruct them into reloading the page in IE mode.

    Once the page is reloaded, the attackers are said to have weaponized an unspecified exploit in the Chakra engine to obtain remote code execution. The infection sequence culminates with the adversary using a second exploit to elevate their privileges out of the browser in order to seize complete control of the victim’s device.

    The activity is concerning, not least because it subverts modern defenses baked into Chromium and Microsoft Edge by launching it in a less secure state using Internet Explorer, effectively allowing the threat actors to break out of the confines of the browser and perform various post-exploitation steps, including malware deployment, lateral movement, and data exfiltration.

    Microsoft did not disclose any details regarding the nature of the vulnerabilities, the identity of the threat actor behind the attacks, and the scale of the efforts.

    However, in response to evidence of active exploitation and the security risk posed by the feature, the company said it has taken steps to remove the dedicated toolbar button, context menu, and the hamburger menu items.

    Users who wish to enable IE mode will now have to explicitly enable it on a case-by-case basis via Edge browser settings –

    • Navigate to Settings > Default Browser
    • Locate the option labeled Allow sites to be reloaded in Internet Explorer mode and set it to Allow
    • After enabling this setting, add the specific site(s) requiring IE compatibility to the Internet Explorer mode pages list
    • Reload the site

    The Windows maker noted that these restrictions to launching IE mode are necessary to balance security and the need for legacy support.

    “This approach ensures that the decision to load web content using legacy technology is significantly more intentional,” Microsoft said. “The additional steps required to add a site to a site list are a significant barrier for even the most determined attackers to overcome.”

    backdoor Feature Hackers legacy locks Microsoft Mode turned
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleAI red flags, ethics boards and the real threat of AGI today
    Next Article Is art dead? What Sora 2 means for your rights, creativity, and legal risk
    Techurz
    • Website

    Related Posts

    Opinion

    Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy

    July 28, 2026
    Opinion

    Indian tech tycoon bets $30M of his own money to build AI alternative to Microsoft Office

    July 2, 2026
    Opinion

    Microsoft taps Alt Carbon in sign of India’s growing role in carbon removal

    June 11, 2026
    Add A Comment
    Latest Tech Pulse

    College social app Fizz expands into grocery delivery

    September 3, 20252,290

    12 Father’s Day E-Card Sites That Are Actually Good

    June 4, 202523

    SolarSquare in talks to raise up to $60M as India’s rooftop solar market draws major VC interest

    May 23, 202622
    Stay In Touch
    • YouTube
    • WhatsApp
    • Twitter
    • Pinterest
    • LinkedIn

    Techurz helps readers stay ahead of digital change with clear, practical, future focused technology intelligence written today,searched tomorrow.

    X (Twitter) Pinterest YouTube LinkedIn WhatsApp
    Company
    • About Us
    • Contact Us
    • Our Authors / Editorial Team
    • Write For Us
    • Advertise
    Policy
    • Editorial Policy
    • Privacy Policy
    • Terms and Conditions
    • Affiliate Disclosure
    • Cookie Policy
    • Disclaimer
    • DMCA
    Explore
    • AI Systems
    • Cyber Reality
    • Future Tech
    • Disruption Lab
    • Signals
    • Tech Pulse
    • Sitemap

    Join the Techurz Brief

    The future does not arrive suddenly.
    Stay ahead with fast, sharp tech signals.

    Type above and press Enter to search. Press Esc to cancel.