

In a technical report from Microsoft’s Browser Vulnerability Research team, investigators said malicious actors had combined basic social engineering tactics with zero-day flaws in Internet Explorer’s legacy JavaScript engine, known as Chakra. The attackers used these unpatched vulnerabilities to gain remote access to targeted machines, often by disguising malicious pages…