search technology reviews, news, features, group tests
Popular Searches:   free , video , windows
 |  Register
 |  Newsletters  | 
Sitemap  |  RSS
RSS
Saturday November 28, 2009 9:17 AM AEST
Skip Navigation LinksPC Authority > News > Attackers target PDF vulnerability
NEWS

Attackers target PDF vulnerability

by Tom Sanders  on Oct 25, 2007
Beware the bill or invoice pdf.
Online criminals have started targeting a vulnerability in Adobe's PDF reader.

Attackers are exploiting the vulnerability through email messages with a specially crafted PDF attachment that is labelled bill.pdf or invoice.pdf. A known vulnerability in the way that the documents are handled subjects recipients to arbitrary code execution, which allows the attacker to recruit a system as part of a botnet or install other malware.

The release of the exploit follows days after a security researcher published a proof of concept for the flaw on 17 October. Adobe released a patch for the vulnerability on Monday 22 October.

Details about the vulnerability were published in late September on the GNU Citizen blog. The blog at the time didn't provide proof of concept (PoC) code, because the author anticipated that Adobe would be slow in creating a patch.

The speedy release of attack code following the proof of concept publication once again illustrated that PoC code can easily be turned into a live attack.

Copyright © 2009 v3.co.uk
Email a Friend Email this
Print Page Print this
Tweet This Tweet this
Feedback Send us your tips


Ads by Google

Comments

Be the first to comment on this article.
Thoughts on this article? Add a comment below.
Login or register to submit a comment.
 

Top Stories

 All I want for Christmas...Apple slapping on the discount stickers this Friday
If you're looking to buy an Apple product then this Friday is your lucky day, with Apple planning a "Black Friday" discount frenzy.
 
Telstra release slew of new plans, Earth fails to shake
New broadband plans from Telstra with bigger download quotas are welcome, though you'll still find better value with the competition
 
TiVo 2.0:  Revamped content line-up could fuel box bust-up for pay TV competition, as IPTV era begins
TiVo have doubled their drive capacity, introduced IPTV capabilities, vast amounts of new content and better home networking options. But can the marketplace handle another content provider?
 


 
Intel
 
Apple Black Friday sale - one day only
 
 
LogMeIn
 
 
Amazing Dell Coupons now available