Adobe to Patch Zero Day PDF Security Threat this Week

· by · News

Adobe has acknowledged reports of an active security threat in Adobe Reader and Acrobat XI 11.0.1 and earlier that's being already being exploited by hackers, and plans to release emergency updates some time this week to patch the flaws. The exploit is highly sophisticated on the level of espionage cyber attacks, according to security research company Kapersky Labs.

Adobe to patch Acrobat exploits this weekAdobe to patch Acrobat exploits this week

The threat was first reported by the security research firm FireEye which noted that the security flaws use maliciously crafted PDF docutments to install apps on the victim's computer that steal passwords and system configuration data, and can log keystrokes, too. The malware uses AES encrytpion and RSA cryptography to communicate with the attacker's servers, which also hints at possible espionage.

While Acrobat and Adobe Reader on the Mac appear to be vulnerable to the flaw, it appears that only Windows-based PCs are being targeted for now.

Adobe hasn't said when this week the Acrobat and Adobe Reader updates will be released, but has promised they are on the way.

Jeff Gamet

Jeff Gamet

Jeff is the Mac Observer's Managing Editor, and co-host of the Apple Context Machine podcast. He is the author of "The Designer's Guide to Mac OS X" from Peachpit Press, and writes for several design-related publications. Jeff has presented at events such as Macworld Expo, the RSA Conference, and the Mac Computer Expo. In all his spare time, he also co-hosts the We Have Communicators podcast, and makes guest appearances on several other podcasts, too. Jeff dreams in HD.

Sign Up for the Newsletter

Enter a valid email address

Join the TMO Express Daily Newsletter to get the latest Mac headlines in your e-mail every weekday.

Adding to list…

No Comments

Add your comment

Remember my personal information

Notify me of follow-up comments?