According to Microsoft's investigation, the attack chain started when users were tricked into visiting exploitative websites.
The lead of Microsoft Edge Vulnerability Research Johnathan Norman has detailed an experiment in Edge that disabled the JavaScript just-in-time (JIT) compiler to enable some extra security protections ...