Description
Detects web content that exploits CVE-2018-8229 and CVE-2019-0539, type confusions in Microsoft Edge's Chakra engine that can allow code execution. The rule matches the character code probing and optimization warmup loops that public exploits use to confuse the engine's type tracking.