Netskope Threat Labs

BROWSER-IE Microsoft Edge anonymous function type confusion attempt

IPS-CFWIPS-SWG

1 SID: 45387

First seen
December 2023
Last seen
October 2026

Detects web content that exploits CVE-2018-0774, a type confusion in Microsoft Edge's handling of anonymous functions that can allow code execution. The rule matches the nested function redefinition pattern that public exploits use to confuse the engine's function bookkeeping.