Adobe reader 0-day vulnerability with modified BlackHole

Br33k

Member
Messages
10
Reaction score
0
Points
1
Group-IB, a Russian cybercrime investigation company has discovered a zero-day vulnerability, affects Adobe Reader X and Adobe Reader XI. The vulnerability is also included in new modified version of Blackhole Exploit-Kit, which is used for the distributing the banking Trojans (Zeus, Spyeye, Carberp, Citadel) with the help of exploitation different vulnerabilities in client-side software.

The particular exploit is available in underground forums for as much as $50,000 and bug is dangerous because it permits cybercriminals to run arbitrary shellcode by bypassing the sandbox feature integrated into the more recent versions of Adobe Reader.

For now this flaw is distributed only in only small circles of the underground but it has the potential for much larger post-exploitation methods.

The exploit is limited to Microsoft Windows installations of Adobe Reader and it can’t be fully executed until the user closes his Web browser (or Reader). Adobe representatives said that they were not aware of the issue. If Group IB’s discovery is confirmed and Adobe patches it, it would end the software maker’s two year run on zero real attacks against the sandboxed versions of Reader.

PoC at youtube: "Adobe Reader X/XI zero-day flaw found by Group-IB"
 
I was doubt why so many ppl send me PDFs last days. :)
 
PDF exploit is not new news!
 
боян трех летней давности
 
Please note, if you want to make a deal with this user, that it is blocked.
PDF exploit is not new news!
This ripper talks like he knows shit about hacking...lol...
you lucky i have deer, could have made a thread with proof on hw u rip..

and Zero-day vulnerability means New vulnerability without patch yet...lol..
Bitch!
 
bobbyazk, huh? You are lucky being a deer.. If I was Ninja I would have banned you with an attitude like that.
 
Please note, if you want to make a deal with this user, that it is blocked.
yh yh....maybe Ninja wont rip $70...RIPPER! lol...funny how poor you are...after carding all ur fucking life...

---------- Сообщение добавлено в 11:44 PM ---------- Предыдущее сообщение размещено в 11:41 PM ----------

if i didnt get a new laptop, i could have ruined your Dump Selling Biz....showing everyone proof of your rip...then MR_Redbull might jus Fire your ASS...lol "support of mr_redbull"
and u proud of your poor ass
 
bobbyazk
Im waiting for you in my icq with proof in a matter of 24hrs
 
Please note, if you want to make a deal with this user, that it is blocked.
paste ur convo with john connell on icq...if you got nothing to hide...
 
Please note, if you want to make a deal with this user, that it is blocked.
Ninja, ICQ store history on your own computer, so if you change laptop, history is gone....
Jus Ask Sinatra to paste convo here...or

I'm sure you'll see in my PM's that i sent him $70 to do business and that was it....check my PMs Should be there...It was cashout business....

Check you'll see...i dnt have history anymore...I got a new laptop.
 
Oh.. Guys, it's not 1st exploit for adobe products, but it's rly new. If some1 disagree, plz pm me with _some_ technical detail about this vuln. Btw, i knw much more about that ;)
 
bobbyazk
Banned for blackmailing.
Remember what calling other person without proofs a ripper will lead you to ban.
 
Top