iEntry 10th Anniversary RSS Archive

IT Management Begins With Security
SecurityProNews > News > Security News > Malicious PDFs Try To Exploit Adobe Flaw
Search:
[ news_security_news ]

Malicious PDFs Try To Exploit Adobe Flaw



David Utter
Staff Writer
2007-10-24

SecurityProNews: Insider Reports Insider Reports RSS Feed


Fixes for Adobe Reader and Acrobat versions 8.1 or prior need to be installed to mitigate a critical vulnerability and the exploits flying around the Internet trying to penetrate those flaws.

The critical Adobe Acrobat Mailto Unspecified PDF File Security Vulnerability, listed here, affects Windows XP users with Internet Explorer 7 in place. Vista is not affected by this problem.

Although Adobe has released fixes for the issue, criminal spammers have been trying to hit people who are slow to update their products. Security firm McAfee reported on their Avert Labs blog the presence of such an exploit in spam messages today.

"Successful exploitation leads to a batch file being executed on the victim's machine that disables the built-in windows firewall," said Vinoo Thomas, "and then downloads a password stealer from an IP address located on the RBN network.

Regular readers of SecurityProNews won't be surprised to learn this exploit has ties to Russia, as so many spam campaigns have over time. RBN, also known as the Russian Business Network (have to love that spammer humor), may be a legitimate business, but it hosts plenty of criminal efforts.

It also comes as no surprise that Russian law enforcement has enjoyed no success in policing RBN for illicit activity, according to reports from other computer security companies.

Security pros should ensure their systems and networks have the Adobe updates in place as needed.



About the Author:
David Utter is a business and technology writer for SecurityProNews and WebProNews.

More news_security_news Articles

SecurityProNews: Insider Reports Insider Reports RSS Feed


Get Your Site Submitted for Free in the World's Largest B2B Directory!

Email Address:
* URL:
*
*Indicates Mandatory Field

Terms & Conditions

iEntry Featured Services: Jayde Member Services | Forums | Freeware | Advertise with Us

Virus Warnings

Subscribe to
SecurityProNews FREE!



[ more newsletters ]

article resources
Search Articles:
[advanced search]

WebProWorld.com
Get in-touch with industry experts and leaders
Post your site for review by expert and peers
Ask Security, IT, Development and Design questions

Free Membership: Join Now!

Visit WebProWorld.com

Titan Quest Forum
The #1 Titan Quest forum
Halo 3 Forum
The best Halo, Halo 2, Halo 3 forum
Nintendo Wii
Nintendo Wii news and views
Mac Software
The best in OS X freeware
Graphics Forum
Your source for graphic tutorials
SecurityProNews.com | Breaking eBusiness News Get Your IT Questions Answered - Click Here SecurityProNews News Feeds