Hacking Team Flash Zero Day – Not Out of the Woods |
Unfortunately, our researchers overnight have found another, new unpatched vulnerability affecting Adobe Flash that is a result of the Hacking Team attack.
Our researchers have notified Adobe and they are aware of the situation and are working on a new update to address this vulnerability.
At this time we’ve not seen this new vulnerability added to exploit kits like the other Hacking Team vulnerability has. We have only seen proof-of-concept (PoC) code: that’s code that shows the vulnerability exists but doesn’t actually levy an attack. PoCs are a first step in the process of seeing actual attacks, so this situation could escalate quickly in the next few days.
Until an update is released, you should consider disabling Flash. You will get update this blog and Security Intelligence blog with more information as it develops.
0 Comments