Slashdot Mirror


New Flash Vulnerability Being Exploited In the Wild (trendmicro.com)

An anonymous reader writes: Researchers from Trend Micro report a new attack on fully-patched versions of Adobe Flash. The attacks originate from an espionage campaign run by the group known as Pawn Storm, and seem to target only government agencies. "Ministries of Foreign Affairs have become a particular focus of interest for Pawn Storm recently. Aside from malware attacks, fake Outlook Web Access (OWA) servers were also set up for various ministries. These are used for simple, but extremely effective, credential phishing attacks. One Ministry of Foreign Affairs got its DNS settings for incoming mail compromised. This means that Pawn Storm has been intercepting incoming e-mail to this organization for an extended period of time in 2015."

3 of 101 comments (clear)

  1. Surprise? by Anonymous Coward · · Score: 5, Funny

    Really? What would be news here is if Flash DIDN'T have a vulnerability for a change...

  2. And here we go....... by JustAnotherOldGuy · · Score: 5, Insightful

    ..........another excellent reason to use AdBlock and NoScript.

    Flash not allowed to run? No Flash exploit, simple as that.

    --
    Just cruising through this digital world at 33 1/3 rpm...
  3. Solved by Tablizer · · Score: 5, Funny

    seem to target only government agencies

    No problem, I'll just put my gov't work on a home server.