Rise Of The PDF Exploits
The Portable Document Format (PDF) is one of the file formats of choice commonly used in today’s enterprises, since it’s widely deployed across different operating systems. But on a down-side this format has also known vulnerabilites which are exploited in the wild. Secure Computing’s Anti-Malware Research Labs spotted a new and yet unknown exploit toolkit which exclusively targets Adobe’s PDF format. This toolkit is dubbed the “PDF Xploit Pack”
390 views
looks like pdf with
looks like pdf with javascript embedded in them ...
After looking at some
After looking at some malicious pdf files it seems that the hackers are using PDF's OpenAction function to call malicious javascript.
So a simple signature to detect pdf's which have embedded javascript which gets called via OpenAction should give nice True-Positives :-)
Post new comment