You say "Not really MikeST, the browser's doing exactly what it's supposed to, though Microsoft might possibly make it a bit easier to exit some of these within Edge."
Firefox and Chome do not respond to this... So yes its an issue with the Microsoft Browser.
Thats what MS needs to fix.
You misunderstand the nature of the attacks MikeST, since they aren't contained on MSN itself, they're delivered instead via the ad networks. What this means is that the ad networks examine the information provided by the browser in use and determine which
ads to display based on information related to the browser, the specific article being accessed and the browsing history of the individual and machine accessing the page.
For the MSN attacks this generally means that the Microsoft browsers are being targeted, since these were originally delivered with MSN as either the home page or Start page, so that's a key portion of the decision whether to display the malvertising ad in
the first place. If either the bowser or the individual and their machine aren't included within the ad profile chosen by the attackers, the popups simply won't display.
A perfect example is my own situation, which though I'm apparently the perfect target using only Microsoft browsers when I purposefully access the exact same articles as others here who've experienced these popups, I can't reproduce them since my Advertising
ID has been disabled, effectively blocking the ability of the collection of any long-term information relating to the machine or myself associated with that ID.
On the other hand, Chrome and Firefox had apparently been more specifically targeted within this earlier campaign back in October, where the popups displayed were keyed to those browsers as well.
Malvertising Group Spreading Kovter Malware via Fake Browser Updates
So the determination as to which specific browsers, machines and even individuals might see these popups has more to do with the targeting chosen by the malvertisers.
Rob