Microsoft Edge: Building a safer browser
blogs.windows.com
blogs.windows.com
They built it from the ground up with security in mind, and with standards compatibility at the expense of backwards compatibility.
In other words, they have finally decided that it is ok to tell their lagging enterprise customers to get with the times.
Well, they're still maintaining IE as a separate browser for those corporate users who rely on it, but it is a first step toward that.
> Microsoft Edge hosts a new rendering engine, Microsoft EdgeHTML
> The largest change in Microsoft Edge security is that the new browser is a Universal Windows app.
Everything they'd said in their press releases, including this one, says that the browser is a completely rewrite from scratch, though leveraging lessons learned on security.
edit: I stand corrected. Is there evidence that the application (Edge) itself is based on IE or just the rendering engine?
edit: See for example http://en.wikipedia.org/wiki/EdgeHTML that mentions it beginning as a fork of Trident.
I see it's going to be a Windows Store app.
I wonder how this will affect the usability for people like myself, who never see the metro side of windows unless I accidentally move the mouse near the wrong side of the screen, or accidentally hit the Windows key. Any time I see a metro app like the horrendous metro version of Windows Update, I moan that it's there like a false positive, close it and find the normal version that isn't awkward to use.
No, they didn't lead the way. PaX beat them by at least 5 years, yet they still take credit for this. They didn't even create the Windows version of ASLR in house.
"including industry leading sandboxing"
They're really going to claim that the Edge sandbox is better than Chrome, with no basis?
Edge has yet to be exploited at Pwn2Own and Chrome gets exploited every year. Clearly that's a better record. ;)
How am I supposed to test that my website works on Edge properly? The only option thus far is to setup a VM with Windows 10 on it so that I can run a browser to test my website.
I dont even bother testing stuff on IE x for that reason.
And even if they did release linux or osx versions you would still want to test in windows, for the differences in font engines etc. Just like testing safari really requires osx.
One can even try to test it remotely, without downloading and installing VM, but in some cases, such as animations testing, VM is more comfortable.
beyond that, there are a ton of ways to easily test IE.
browserstack, saucelabs, free virtual machines for local testing, the azure remote tester amongst others.
They have other tools there to help as well. Microsoft is pretty good about helping devs here.
It's not like testing sites in Safari is better, Apple isn't even bothering to update Safari on Windows as it has been dead for nearly more than 2 years.
At least Microsoft is updating more often than Apple. They already have IE11 on Win10 dev VM there.
WebKit works on every major operating system, including Windows and Linux. IE/Spartan/Edge does not work outside of Windows.
There are some minor feature differences between WebKit, OS X Safari, and iOS Safari, but the reality remains that WebKit exists on Windows, can be built on Windows, and can be used on Windows, while IE/Spartan/Edge works on nothing but Windows.
Edit: I'd love to hear from the ethically bankrupt downvoters about which fact in this comment they are trying to hide from.
(And while I can't speak for the downvoters because I'm not one of them, I suspect that it's not the facts presented in the post that are attracting the downvotes so much as that it's written in the form of a flame.)
While we are at it, let's talk about Mozilla's browser and rendering engine that also works on every major operating system.
Chrome didn't render the same as Safari when Chrome used WebKit, either. You're caping up for this, and I can't for the life of me figure out why.
You can't say the same for Apple's Safari browser.
How much will the user base grow by allowing a small fraction of desktop users the option of using this browser?
But it did seem like they ported a lot of OS X libraries to Windows just to get it working. If I remember correctly, it had OS X font rendering for example.
Years too late of course, but good to see this finally happening.
Microsoft browsers will always have a foothold in enterprise environments, and the prospect of developing against a "real" browser when working with enterprise customers is rather exciting.
And many more who swear at VBScript...
The guys who swear by it are not programmers. Sorry.
edit: unfortunately, no, it just appears to be another sign-in with company X: http://blogs.windows.com/bloggingwindows/2015/03/17/making-w...
This sounds more like an extension of the browser that either you use Edge or you can't sign in
After 32-bit Windows Server went away as of 2008 R2, I didn't expect MS to keep shipping 32-bit client for this long. Anybody have a convincing argument as to why? 16-bit legacy apps in large businesses?
Obviously it's not free to do this, especially since they'll be producing every patch for two PC platforms for probably another decade.
Interesting; I don't think this has been announced before. It sounds similar in concept to Chrome's Oilpan (still not shipped AFAIK).
That said, I've always wondered what a JavaScript implementation built on top of the CLR might behave like.
http://blog.trendmicro.com/trendlabs-security-intelligence/m...
Lots of them. Many surveys show it down in the Safari region, for instance:
http://gs.statcounter.com/#all-browser-ww-monthly-201504-201...
Every other major source than that one reports IE well above 12%
http://www.zdnet.com/article/the-most-u-s-popular-web-browse...
https://www.netmarketshare.com/browser-market-share.aspx?qpr...
The second one excludes mobile, for no good reason that I can see. Mobile is huge.
The old Android browser was different code, but that's been on its deathbed for a while now.
Mobile users use the same sites as desktop users, to a very large degree. They use the same browser code (again, to a very large degree). The only reason to separate them that I can see is to artificially inflate the number of IE users.
Of course, they're also the only source that tries to count "unique visitors" rather than traffic, and uses country-level weighting to attempt to correct for sampling bias.
But personally, I still find StatCounter more useful.
Love the tongue-in-cheek swipe at Java applets. Perhaps I'm reading too much into this line.