Netskope Threat Labs

BROWSER-PLUGINS Microsoft Internet Explorer CapiCom.Utilities ActiveX control getRandom method access attempt

IPS-SWG

1 SID: 44088

First seen
August 2022
Last seen
October 2026

Detects web content invoking the getRandom method of the deprecated CAPICOM Utilities ActiveX control by its class identifier. Security products flag CAPICOM access because the legacy control is no longer maintained, and its presence in web content usually signals an attempt to abuse an outdated component.