Adobe says Acrobat, Reader vulnerable to hacks

This is a disturbing as most white pages and manuals ranging from automobiles and computer motherboards are in PDF format. Even eBooks could be an easy way for a hacker to gain access to your machine, illegal books put online could be a trap for unsuspecting downloaders. Adobe says Acrobat, Reader vulnerable to hacks – BOSTON (Reuters) – Adobe Systems Inc, whose software is used by millions of people to read documents sent over the Internet, said on Wednesday some of its programs contain yet-to-be-fixed flaws that make computers vulnerable to attack. On October 5, Adobe posted a notice on its Web site that said it had unknowingly incorporated vulnerabilities into versions of Adobe Reader and Acrobat software that could allow malicious programs to get on to a PC without the user’s knowledge.

This is a disturbing as most white pages and manuals ranging from automobiles and computer motherboards are in PDF format. Even eBooks could be an easy way for a hacker to gain access to your machine, illegal books put online could be a trap for unsuspecting downloaders.


Adobe says Acrobat, Reader vulnerable to hacks
– BOSTON (Reuters) – Adobe Systems Inc, whose software is used by millions of people to read documents sent over the Internet, said on Wednesday some of its programs contain yet-to-be-fixed flaws that make computers vulnerable to attack.

On October 5, Adobe posted a notice on its Web site that said it had unknowingly incorporated vulnerabilities into versions of Adobe Reader and Acrobat software that could allow malicious programs to get on to a PC without the user’s knowledge.

Such malicious software can take control of a machine and steal confidential data, send out tens of thousands of spam e-mails, or infiltrate government computer systems.

Adobe said it believes the flaws only affect computers running Microsoft Corp’s Windows XP operating system and Internet Explorer 7 Web browser. Adobe said it was working to rectify the problem but the fix might not be available until the end of October.

Some security experts say that may not be soon enough to stop hackers determined to get malicious software past firewalls and other security software programs.

“Users should pressure Adobe to release a patch sooner than that,” said Gadi Evron, a security expert at Beyond Security. He has organized three closed-door international conferences on efforts by governments and private companies to fight computer attacks.

Malicious software is a common problem. Recent examples have corrupted eBay Inc’s Skype Internet telephone service and Time Warner Inc’s AOL instant messaging software. Hackers sometimes hide malicious software inside Microsoft Word documents and photo files, hobbling computers when users open them.

Some security experts said that what makes the Adobe case disturbing is that it came to light before the company had a solution to fix the problem, which means hackers have an opportunity to exploit the

Read the full story at Reuters


Did you like this article?


0 Shares:
You May Also Like

24-hour Test Drive of PC-BSD

My original colocation machine was FreeBSD 4.2 and it was fun to play with. The package system was great, you could either compile or install pre-compiled versions. However, when you upgrade and leave compiled/pre-compiled packages dormant. They can come back to bit you in the ass with dependency issues and the package database breaking. I'm glad someone is making an effort to make it more user friendly, although I don't run BSD I love a lot of its features. 24-hour Test Drive of PC-BSD - An anonymous reader writes "Ars Technica has a concise introduction to PC-BSD, a FreeBSD derivative that emphasizes ease of use and aims to convert Windows users. The review describes the installation process, articulates the advantages of PC-BSD,and reveal some of the challenges that the reviewer faced along the way. From the article: 'In the end, I would suggest this distribution to new users provided they had someone to call in case of a driver malfunction during installation. I would also recommend PC-BSD to seasoned Unix users that have never tried using FreeBSD before and would prefer a shallower learning curve before getting down to business.'"

Read more of this story at Slashdot.

[Slasdot]
Read More

Playing Loud Music Means Copyright Lawsuit for Public Performance in UK

This story is pretty insane, just because someone can hear the loud music its considered a public performance? Sue..Sue..Sue.
Playing Loud Music Means Copyright Lawsuit for Public Performance in UK - Employees at many companies listen to music while they work, but one business in the UK is being targeted with a hefty £200,000 copyright infringement suit because the music was played too loudly. The UK-based Performing Rights Society—a group that collects royalties for publishers, songwriters, and composers—has accused a car repair chain [Digg Main]
Read More

Network Solutions (NSI) is registering every domain name checked throug their WHOIS

I always thought there was something really strange about the WHOIS searches done at Registrars. Specifically the searches would have to be done on their website, a normal "whois" lookup through Linux wouldn't show up registered the next day.
A story is developing regarding domain name registrar Network Solutions front running domains. According to multiple sources on DomainState.com, it appears that domains searched via NSI are being purchased by the registrar thereby preventing a registrant from purchasing it at any other registrar other than NSI. As an example, a random domain which DNN searches such as HowDoesThisDomainTasteTaste.com can be seen in this whois search to now be unavailable to register at other registrars but at NSI it can be purchased
Full article at domainnamenews.com
Read More