New Adobe Reader zero day used in phishing attacks

mask.of.sanity (1228908) writes | about a year and a half ago

mask.of.sanity (1228908) writes "Zero day holes found in Adobe Reader are being exploited by attackers in phishing campaigns.

The attack drops two dll files: One opens a PDF to distract users while the other opens a backdoor.

Adobe confirmed the latest versions of Reader and Acrobat (10.1.5, and 11.0.1) are affected."

Adobe Didn't "Confirm" - They Acknowledged Report (1)

wiredmikey (1824622) | about a year and a half ago | (#42884141)

Adobe didn't' CONFIRM that latest versions of Reader and Acrobat where affected. While they MAY be, Adobe simply acknowledged the report of a vulnerability and that they were looking into it.

"Adobe is aware of a report of a vulnerability in Adobe Reader and Acrobat XI (11.0.1) and earlier versions being exploited in the wild. We are currently investigating this report and assessing the risk to our customers," the post from Adobe said.

