Skip to content
tempatnakal.com

tempatnakal.com

An Adobe Flash 0day is being actively exploited in the wild

Holly Clancy, February 8, 2018

Enlarge / A screenshot of the malicious Excel document spreading a Flash zeroday. (credit: Talos)

An increasingly sophisticated hacking group is exploiting a zero-day vulnerability in Adobe’s Flash Player that lets them take full control of infected machines, researchers said Friday.

The critical, use-after-free vulnerability, which is indexed as CVE-2018-4877, resides in the latest version of the widely installed Flash, researchers from Cisco Systems’ Talos group said in a blog post. Adobe said separately that versions earlier than current Flash 28.0.0.137 are also susceptible. The vulnerability came to light on Wednesday when South Korea’s CERT issued an advisory warning that attack code was circulating in the wild that exploited the zeroday flaw.

Talos said the exploit is being distributed through a Microsoft Excel document that has a malicious Flash object embedded into it. Once the SWF object is triggered, it installs ROKRAT, a remote administration tool Talos has been tracking since January 2017. Until now, the group behind ROKRAT—which Talos calls Group 123—has relied on social engineering or exploits of older, previously known vulnerabilities that targets hadn’t yet patched. This is the first time the group has used a zeroday exploit.

Read 5 remaining paragraphs | Comments

Technology

Post navigation

Previous post
Next post

Categories

Archives

Recent Posts

  • Leather Jean Jackets for Men’s

  • Merino Wool Turtleneck Sweater Mens

  • Size 4 Boots for Kids Girl

  • Levi’s Men Denim Jackets

  • Top 10 Best Fishing Reels Line Winder Comparison

  • Top 10 Best Bluetooth Microphone For Sony Car Stereo Comparison

  • Neco Runzler Education Review

  • Pink John Deere Boots Child

  • Top 10 Best Fishing Reels Closed Face Comparison

  • Top 10 Best Fishing Reels Salt Pepper Comparison

  • Grey Drawstring Shorts Mens

  • Man Utd legend blasts these two defensive stars

  • 21st Birthday – Top Ten Celebration Tips

  • Top 10 Best Java.sql.sqlexception: Access Denied For User Root@localhost (Using Password: Yes) Comparison

  • What Is a Sport Coat

  • What Do You Wear With a Sport Coat?

  • Mens Short on Sale

  • Poker: World Series of Poker – How World Series of Poker begun

  • Men in Short Short

  • What Is a Fitted Suit?

  • Denim Jackets Men’s Outfits

  • Acid Wash Jean Jacket Men

  • Top 10 Best Fishing Rods And Reels Combo One Piece Comparison

  • Wooden Racket

  • Top 10 Best Simple Mobile Rewards Comparison

  • Trump’s Head Will Explode As His Own Director Defies Him And Praises The FBI’s Integrity

  • Does Email Marketing Still Work?

  • Airmega 300 Air Purifier Reviews

  • Top 10 Best Mainstays Trivets Comparison

  • A Week of Outfits: Nicole Bruno

©2025 tempatnakal.com | WordPress Theme by SuperbThemes