reader

(get it in RSS or Atom)

PWN2OWN results Day Two - Adobe Reader and Flash owned, Java felled yet again

PWN2OWN 2013 finished off today.

A second scheduled attack on IE 10 didn't happen, so IE 10 didn't get owned again, but Flash and Reader fell once each, and Java was exploited for the fourth time in two days...

That was quick! Adobe's emergency patch for Reader and Acrobat is here...

adobe-reader-250

Adobe has released the emergency update for Reader and Acrobat that it promised late last week.

You may as well take advantage of Adobe's new-found velocity and get busy patching!

No patch yet for Adobe PDF exploits - Adobe suggests a workaround; Mac and Linux users need not apply

No patch yet for Adobe PDF exploits - Adobe suggests a workaround, but Mac users need not apply

Adobe issues advice on how to mitigate the latest exploits against its PDF Reader software.

For Windows users, anyway. Mac and Linux fans are still out in the cold.

PWN2OWN - hack the Big Four browsers in public and go home with half a million dollars

targets-250

Only six weeks to go until PWN2OWN 2013, where you can hack the Big Four browsers and the Big Three plugins, and win over half a million dollars.

But is it just about the money?

Paul Ducklin investigates...

Vulnerability reported in Foxit PDF plugin for Firefox - how to mitigate it

Italian security researcher Andrea Micalizzi has recently reported a vulnerability in the latest Foxit PDF plugin for Firefox.

Paul Ducklin examines the situation and gives a simple workaround.

Adobe fixes 25 critical security holes in its software

flash-logo

Adobe released an important update for its software on Monday, fixing 25 security holes. The updates affect Flash running on Windows, Apple Mac and Linux systems.

In addition, Adobe AIR users on Windows, Mac OS X, Android and iOS are also advised to install an update.

Patch Tuesday - what to know and what to do for Microsoft and Adobe users

Patch Tuesday - what to know and what to do for Microsoft and Adobe users

Both Adobe and Microsoft published Patch Tuesday updates this week.

There are plenty of issues to be concerned about - so we've written up our recommendations to help you prioritise your own patching...

Patch Tuesday April 2012 - Critical updates for Windows, Office and Adobe Reader

Patch Tuesday for October 2012

Microsoft released six patches for eleven vulnerabilities today for Windows, Office, SQL and other products. Adobe also updated their Reader app to fix four vulnerabilities that can be exploited by malicious PDF files.

Adobe Flash Player 11 and Reader security - Interview with Brad Arkin

iStock_Microphone250

Adobe released Flash Player 11 this week, so I sat down with Brad Arkin from Adobe to discuss the new security and privacy features and the general security landscape surrounding Adobe Reader.

Patch Tuesday part two - Adobe patches Reader, Flash and more

adobe logo

Adobe's Patch Tuesday quarterly release is out and fixes many critical vulnerabilities. Time to patch Reader, Acrobat, Shockwave, Flash, ColdFusion, LifeCycle and Blaze...

Adobe issues critical zero-day patch for Reader and Acrobat

adobe logo

Adobe have just released an out-of-cycle patch to address a critical vulnerability (CVE-2011-0609) in Adobe Reader and Acrobat for Windows and Mac. Naked Security recommends that all users update now.

Patch Tuesday for February 2011 - Adobe and Microsoft

bandaid250

Microsoft released 12 fixes as part of their monthly Patch Tuesday and Adobe released critical fixes for Flash Player, Shockwave Player and Adobe Reader/Acrobat. Read on to find out why you should update now!

Critical zero-day vulnerability found in Adobe Flash, Reader, Acrobat

Adobe products suffer from critical vulnerabilities

Adobe Flash, Reader and Acrobat are vulnerable to security holes that could allow malicious hackers to take control over your computer.

A lesson in heuristic PDF detection

vb2010

Many of you are all too aware of the number of patches repairing flaws in Adobe's Reader and Acrobat software in the last couple of years. Their PDF reader is deployed on nearly all computers, which is too juicy of Read more…

Apple and Adobe update their wares

Image (1) androidflash250.png for post 3521

Time to update your Adobe Flash Players! Adobe has released Flash Player 10.1.85.3 for Windows, Macintosh, Linux and Solaris and 10.1.92.10 for Android (Froyo). As in the past follow the usual procedure to update by visiting http://get.adobe.com/flashplayer. Android users can Read more…

Adobe advises on new Reader and Acrobat vulnerability

Default image

Update: After analyzing the payload that is downloaded by the in the wild sample provided by @snowfl0w I can report that Sophos detects the payload as Troj/Agent-OOH. Kaspersky is reporting that payloads have been seen that are digitally signed using Read more…

Adobe, make my day. Disable JavaScript by default

Adobe make my day

Sophos principal virus researcher Vanja Svajcer guest blogs about the latest security updates from Adobe. Over to you Vanja... Users around the world will be pleased to learn that Adobe has managed to release an accelerated security update for Adobe Read more…

Adobe products struck by zero-day attacks

Adobe products struck by zero-day attacks

Adobe's products are once again in the firing line, as hackers are reportedly exploiting critical unpatched vulnerabilities in the products Adobe Reader, Acrobat and Flash Player. Adobe has published a security advisory describing the problems which affect users regardless of Read more…

Adobe Patch Tuesday to bring automatic updates

Image (2) adobe-updater.jpg for post 16223

On Tuesday April 13th it's not only the regular appointment for system administrators around the world to expect the latest bunch of monthly security updates from Microsoft, it will also be time for a scheduled quarterly update from Adobe for Read more…

Critical security update for Adobe Reader and Acrobat

Image (2) adobe-links.jpg for post 15842

Adobe has issued a security bulletin urging users of its Adobe PDF Reader and Acrobat products to update their software before hackers take advantage of two critical vulnerabilities. Adobe Reader 9.3 for Windows, Macintosh and UNIX, Adobe Acrobat 9.3 for Read more…