Monday, November 10, 2008
Just days after it was announced that there were a host of flaws in the Adobe Acrobat program, Sans Internet Storm Center identified attacks exploiting the vulnerability in the wild.
According to the site, reports of the potential network security threat were proven to exploit a flaw patched by Adobe a couple of days ago.
Bypassing network security filters, the flaw can lead to arbitrary code execution through obfuscated JavaScript commands contained within crafted PDF files.
Antivirus software researcher Bojan Zdrnja, of the Internet Storm Center, said that the problem highlighted the need for users to patch the program to prevent the risk of a data security breach.
Following on from reports of the flaw being exploited in the wild, Adobe reiterated its advice that users should update the Reader program to protect themselves from the threat.
The company listed the vulnerability as critical, its highest severity rating.
It noted that the exploit could allow a malicious user to crash the program and take control of the system.
Related News:
SMBs giving security bigger slice of budget pie - 1.6.2009
A new report from a research firm has found large corporations and SMBs will be using a bigger percentage of their IT budgets toward security this year.
Gaza strip conflict spurs cyberattack - 1.2.2009
Last weekend, more than 300 Israeli websites have been defaced in massive cyberattacks in a form of retaliation for the brutal conflict emerging between the Jewish state and Hamas targets in the Gaza Strip.
DOS attack for smartphones possible - 1.2.2009
A German security researcher has shown how a malicious text message may be used as a denial-of-service (DOS) attack for some Nokia smartphones that is now prompting some security providers to release updated software.
Big network security threat in 09: angry employee - 12.30.2008
While network security has evolved to block botnets and various phishing attacks, there is still no cure for the "malicious insider" with the knowledge and the will to take down a company from the comfort of their cubicle.
Childs stands trial for hijacking San Francisco network - 12.29.2008
A San Francisco superior court ruled yesterday that there is enough evidence for Terry Childs, a former network administrator, to stand trial for allegedly hijacking the city's online system he helped design.


