Months-old Adobe Reader zero-day uses PDFs to size up targets
ID: b665f8b9-5edf-553e-99f2-a561a6ce8729
STIX ID: report--b665f8b9-5edf-553e-99f2-a561a6ce8729
Feed Name: The Register (Security)
Threat Score
Researchers reported a months-long, in-the-wild zero-day exploit against Adobe Acrobat Reader where booby-trapped PDFs run obfuscated JavaScript on open to profile systems, exfiltrate system and file information, and selectively fetch a second-stage payload that may achieve remote code execution or sandbox escape; lure documents suggest targeting related to Russian oil and gas, and no CVE or patch had been released at the time of reporting.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
