February 2014 : FireEye announced the discovery of a new 0day vulnerability targeting Internet Explorer 10 and the website of U.S. Veterans of Foreign War. During the same period, Websense announced the discovery of the same vulnerability personating the GIFAS.
FireEyes said that there are similarities between this new 0day flaw, and two APTs already known called « Deputy Dog » and « Ephemeral Hydra ». The exploit proceed with an Inframe in a malicious Javacript code.
This 0day vulnerability, which is already exploited in the wild, and where no patch is available, is proactively blocked by StormShield, using the protection against memory corruption.