IE 7 address bar spoofing issue
Another issue was reported with the new IE 7 and confirmed by Microsoft. It seems that it’s possible for a malicious link to spoof the information in the address bar (make it look like you’re at a site that you’re NOT at.) Incidents.org gives the following possible workaround…
As a quick workaround you may want to configure MSIE 7.0 to open new windows in a new tab. In order to do this, Tools -> Internet Options -> Tabs Settings -> When a pop-up is encountered: Always open pop-ups in a new tab.