A security researcher has created a proof-of-concept PDF file that executes an embedded executable without exploiting any security vulnerabilities. The hack could potentially allow code execution attacks if a user simply opens a rigged PDF file. Adobe s PDF Reader will block the file from automatically opening but he warned that an attacker could use social engineering tricks to get users to allow the file to be opened. The issue has been reported to Adobe’s security response team. The researcher tested his research on Adobe Reader 9.3.1 (Windows XP SP3 and Windows 7)
Source: https://threatpost.com/hacker-finds-way-exploit-pdf-files-without-vulnerability-033010/73761/

