Dennis Fisher talks with Didier Stevens, the researcher who developed the innovative method for using the /launch command in PDF readers to execute code on remote machines. Stevens discusses the ramifications of the discovery, the security of PDFs in general and the user behavior that makes these attacks more effective. FinSpy has returned in new campaigns targeting dissident organizations in Egypt and researchers uncovered new samples of the spyware targeting macOS and Linux users. Participants remotely win $295k in prizes for taking down Adobe Reader, Safari and Ubuntu.
Source: https://threatpost.com/didier-stevens-pdf-hacking-and-security-050410/73919/