May 28, 2012, 01:58:07 AM
Welcome,
Guest
. Please
login
or
register
.
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
News
: the difference is in the hyphen
Home
Help
Search
Login
Register
She-geeks Forum
>
Security
>
Computer Security
(Moderators:
swytch
,
justy
) > Topic:
Researcher: Rogue PDFs account for 80 percent of all exploits
Pages:
1
Go Down
« previous
next »
Print
Author
Topic: Researcher: Rogue PDFs account for 80 percent of all exploits (Read 377 times)
0 Members and 2 Guests are viewing this topic.
angelfire
Honored Member
Full Member
Karma: 622
Offline
Posts: 212
Researcher: Rogue PDFs account for 80 percent of all exploits
«
on:
February 17, 2010, 05:43:44 AM »
*******
Just hours before Adobe is slated to deliver the latest patches for its popular PDF viewer, a security firm announced that by its counting, malicious Reader documents made up 80 percent of all exploits at the end of 2009.
According to ScanSafe of San Bruno, Calif., vulnerabilities in Adobe’s Reader and Acrobat applications were the most frequently targeted of any software during 2009, with hackers’ PDF exploits growing throughout the year.
In the first quarter of 2009, malicious PDF files made up 56 percent of all exploits tracked by ScanSafe. That figure climbed above 60 percent in the second quarter, over 70 percent in the third and finished at 80 percent in the fourth quarter.
“PDF exploits are usually the first ones attempted by attackers,” said Mary Landesman, a ScanSafe senior security researcher, referring to the multi-exploit hammering that hackers typically give visitors to malicious Web sites. “Attackers are choosing PDFs for a reason. It’s not random. They’re establishing a preference for Reader exploits.”
*******
Read more:
http://www.macworld.com/article/146474/2010/02/pdf_security.html?lsrc=rss_main
Logged
justy
Administrator
Hero Member
Karma: 4588
Offline
Posts: 1407
but then it's your life uh huh, it's your life. uh, huh. but, you've only got one.
Re: Researcher: Rogue PDFs account for 80 percent of all exploits
«
Reply #1 on:
February 17, 2010, 04:00:59 PM »
those pdf's can be nasty buggers.
Logged
01101010011101010111001101110100011010010110111001100001
swytch
GeekTastiC
Administrator
Sr. Member
Karma: 4020
Offline
Posts: 726
"Quis custodiet ipsos custodes?"
Re: Researcher: Rogue PDFs account for 80 percent of all exploits
«
Reply #2 on:
February 18, 2010, 10:52:48 AM »
In this case, then, do you think its fair to say that "attackers" are focusing on a certain sterotype of users? Many times I read of exploits targeting software companies but, I think in this instance, they are banking more on the "type" of users who might be frequently using PDFs and assuming they fall victim more often (which it appears statistics might prove valid). Its not poor Adobe.. its poor Adobe's target market! Interesting...
Anyone else's thoughts on this??
Swytch~~
Logged
The present moment is your only reality...
angelfire
Honored Member
Full Member
Karma: 622
Offline
Posts: 212
Re: Researcher: Rogue PDFs account for 80 percent of all exploits
«
Reply #3 on:
February 18, 2010, 04:56:44 PM »
Hmmm... I'm leaning more towards it being due to the sheer
size
of Adobe's market, rather than to perceptions of the users themselves. The more users, the more end targets for the attacks. And it sounds like the Adobe software itself is becoming known to the hackers as having a lot of areas to exploit, so there's the double attraction of it being both vulnerable and widely used.
I Have Adobe Reader and use it occasionally for things that are only available in PDF. This news about it being unsafe has me unsettled -- having just gone through a nasty round with an infected laptop, I'm not up for a repeat any time soon. Are there better alternatives to Adobe, or maybe preemptive measures that can be taken when using it? (Come to think of it, Swytch, maybe you're on to something with it being the users themselves. If the majority are anything like me, they're clueless!!
)
Logged
swytch
GeekTastiC
Administrator
Sr. Member
Karma: 4020
Offline
Posts: 726
"Quis custodiet ipsos custodes?"
Re: Researcher: Rogue PDFs account for 80 percent of all exploits
«
Reply #4 on:
February 18, 2010, 10:55:45 PM »
I haven't read into it enough to note whether the problem lies with specifically "adobe products" or if its the PDF technology itself. A pretty good Adobe PDF alternative which I use frequently (because its free, faster and less of a process hog) is CutePDF.
Swytch~~
Logged
The present moment is your only reality...
Pages:
1
Go Up
Print
She-geeks Forum
>
Security
>
Computer Security
(Moderators:
swytch
,
justy
) > Topic:
Researcher: Rogue PDFs account for 80 percent of all exploits
« previous
next »
Jump to:
Please select a destination:
-----------------------------
Myspace, Facebook, Photobucket and other Social Networking
-----------------------------
=> How to see myspace, facebook, and photobucket PRIVATE goodies!
=> Myspace Trackers
=> Myspace Discussion/Help
=> Sites that Scam?
=> Facebook Discussion/Help
=> Social Networking
-----------------------------
Security
-----------------------------
=> Encryption
=> Bypass Windows XP adminstrator password
=> Computer Security
-----------------------------
Operating Systems
-----------------------------
=> Windows
===> Windows Tips, Tricks & Tools
=> Linux
=> Mac
-----------------------------
Hardware
-----------------------------
=> Internal - Motherboards, video cards, RAM, Drives, etc.
=> External - Printers, Scanners, Mice, USB Devices, etc.
-----------------------------
Web Development
-----------------------------
=> HTML/CSS
=> PHP, VB, etc
=> Photoshop, GIMP and Other Editing Software
=> Lets Talk Video
-----------------------------
Game Squad
-----------------------------
=> FB Games
=> Online an PC Games
=> Wii, Xbox, Playstation an More...
-----------------------------
General Category
-----------------------------
=> Underground Handbook - Security
=> Mobile Devices
=> Current Events
=> Software Recomendations
=> she-geek loveline
=> General Discussion
=> get some geek gear
-----------------------------
she-geeks content
-----------------------------
=> Virtualization
=> Browsers
===> Search Engines
Loading...
Custom Search