Get a Pentest and security assessment of your IT network.

Cyber Security

New Attacks Targeting Adobe PDF Flaw

The attack uses a sophisticated JavaScript-based exploit that includes shell code that is just 38 bytes long. The vulnerability that this attack exploits has not been patched yet. Adobe is scheduled to publish a fix for it on Jan 12. The attack includes two separate binaries, the first of which installs a copy of the old PoisonIvy backdoor. It tries to connect to a remote C&C server, which is apparently offline right now. The code then attempts to decompress the streams, which fails, but the Adobe application will execute the code anyway.

Source: https://threatpost.com/new-attacks-targeting-adobe-pdf-flaw-010410/73313/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security