A new attack targeting Adobe Reader has surfaced.
"The PDF file uses what's known as egg-hunting shellcode to compress the first phase of the malicious payload into 38 bytes, a tiny size that's designed to thwart anti-virus detection," writes The Register's Dan Goodin. "As a result, just four of the 41 major AV programs detect the attack more than six days after the exploit surfaced, according to this analysis from Virus Total."
"The shellcode then loads an obfuscated binary file contained in the PDF file that installs PoisonIvy, a backdoor client used to maintain control over infected PCs," Goodin writes.
Click here to read the story at The Register.
Loading Comments...