Blog | G5 Cyber Security

CVE-2018-4878: An Analysis of the Flash Player Hack

Morphisec has decrypted the working exploit from a fully decrypted working exploit. Exploit uses a Flash wrapper to attack 32 and 64 bit browsers. The vulnerability was still a zero-day at the time of the previous post. Adobe released a new version of Flash that fixed the flaw yesterday. With that fix available, Mor Memphisec is now free to release technical details of the attack. The exploit is well structured and the attacker is able to bypass the DEP by changing the shellcode protection to Execute, and then executing shellcode.”]

Source: https://blog.morphisec.com/cve-2018-4878-an-analysis-of-the-flash-player-hack

Exit mobile version