Netskope Threat Labs

BROWSER-IE Microsoft Edge type confusion code execution attempt

IPS-CFWIPS-SWG

1 SID: 47742

First seen
December 2023
Last seen
October 2026

Detects web content that exploits CVE-2018-8467, a type confusion in Microsoft Edge's scripting engine that can allow code execution. The rule matches the method invocation with an inline object assignment that public exploits use to confuse the engine's value handling.