Netskope Threat Labs

BROWSER-IE Microsoft Edge Chakra scripting engine type confusion attempt

IPS-CFW

7 SIDs: 46934, 48772, 50846, 200217, 200218, 200219, 200303

Detects web content that exploits CVE-2018-8229 and CVE-2019-0539, type confusions in Microsoft Edge's Chakra engine that can allow code execution. The rule matches the character code probing and optimization warmup loops that public exploits use to confuse the engine's type tracking.