Get a Pentest and security assessment of your IT network.

Cyber Security

New Attacks Targeting Adobe PDF Flaw

The attack uses a sophisticated JavaScript-based exploit that includes shell code that is just 38 bytes long. The vulnerability that this attack exploits has not been patched yet. Adobe is scheduled to publish a fix for it on Jan 12. The attack includes two separate binaries, the first of which installs a copy of the old PoisonIvy backdoor. It tries to connect to a remote C&C server, which is apparently offline right now. The code then attempts to decompress the streams, which fails, but the Adobe application will execute the code anyway.

Source: https://threatpost.com/new-attacks-targeting-adobe-pdf-flaw-010410/73313/

Related posts
Cyber Security

Zip Codes & PII: Are They Personal Data?

Cyber Security

Zero-Day Vulnerabilities: User Defence Guide

Cyber Security

Zero Knowledge Voting with Trusted Server

Cyber Security

ZeroNet: 51% Attack Risks & Mitigation