Tuesday 19 January 2010

Poisoned PDF pill used to attack US military contractors

By John Leyden
The Register
18th January 2010

Unidentified hackers are running an ongoing cyber-espionage attack targeting US military contractors

Booby-trapped PDF files, posing as messages from the US Department of Defense, were emailed to US defence contractors last week. The document refers to a real conference due to be held in Las Vegas in March.

Opening the malicious PDF file attached to the spoofed emails triggers an attempt to exploit an Adobe Reader vulnerability only patched by the software firm last Tuesday (12 January).

The infection of vulnerable systems opens up a backdoor that connects to a server hosted in Taiwan, though the hackers who set up the attack may potentially be located anywhere.

emails

a

The Register - Security

IQ test

The Register - Security: Anti-Virus

HackWire - Hacker News