A recent leak of internal documents from gray-hat software developer Hacking Team has revealed another zero-day vulnerability in the Flash plugin. As Ars Technica reports, the vulnerability has been verified by anti-virus maker Symantec and is known to affect Internet Explorer, though Symantec believes it can affect Flash in other browsers, as well. If exploited, this vulnerability could allow an attacker to remotely execute code on a targed machine.
In Symantec's blog post on the topic, the company warns, "Given the source of the proof-of-concept code, it is possible that this vulnerability has already been exploited in the wild. Following its disclosure, it can be expected that groups of attackers will rush to incorporate it into exploit kits before a patch is published by Adobe." Ars says Adobe is aware of this vulnerability and plans to issue a patch on Wednesday. In the meantime, we concur with their advice to disable Flash if possible.
|I made my dumb appliances smarter with the Internet of Things||25|
|Cortana takes the fight to Alexa with the Microsoft Home Hub||1|
|Seagate Duet portable drive reaches for the clouds||8|
|Deals of the week: laptops and a mixed bag of goodies||23|
|Panasonic develops an IPS panel with a million-to-one contrast ratio||77|
|ASRock Beebox-S reports for HTPC duty||25|
|Zalman's ZM-K900M RGB LED gaming keyboard reviewed||10|
|Silverstone Primera case looks hot and stays cool||10|
|Poll: Did you buy into the world of VR this year?||106|
|New! Botnet your case fans!||+43|