May 29, 2008

Patch Your Adobe Flash Please

Yes, once again - it's time to fix things.  There is a new exploit out that is using Adobe Flash.  Unless you've totally locked down your machine and never look at anything but text - it's a no brainer certainty you've got Flash installed somewhere.

Regardless, tens of thousands of websites beginning Saturday have been compromised with SQL injections so they can serve as launching pads for the exploit.


I'm thinking there are lots of people running older versions. I'm probably one of them and I'll need to patch it. I nearly missed this announcement since I've been so busy. (even when you're looking out for this crap it's difficult to keep up)

Roughly half of users are patched with latest version of Flash, 9.0.124. Richard said it is possible for users who leverage more than one browser to be running different versions of the software.

“It does require a little more diligence than just checking, say, the version you got installed with IE (Internet Explorer),” he said.

Users are infected when they visit a compromised website, which automatically opens a hidden IFRAME. According to McAfee, a Google search yields about 250,000 page results that contain malicious scripts referencing an SWF (Shockwave Flash) file.


Oh joy...

Go here to patch 'em up peeps.

Posted by: Teresa in WebTech at 09:32 AM | Comments (4) | Add Comment
Post contains 218 words, total size 2 kb.

1 My IE is so messed up I can't look at anything in it, let alone flash... but am I still at risk with FF if I'm using noscript?

Thanks for the tip, by the way!

Posted by: pam at May 29, 2008 11:25 AM (l6NIn)

2 Thanks for the direct link.  I used it to fix up a half dozen machines.

Posted by: rammer at June 02, 2008 10:32 PM (MTipP)

3 Glad to help Rammer.  I had to go looking about to find it.  The article didn't exactly give a direct link which is irritating, but not unusual. Heh. 

Posted by: Teresa at June 02, 2008 10:37 PM (mMa3+)

4 Yes - thanks for the heads up Teresa!!

Posted by: Richmond at June 03, 2008 10:31 AM (e299c)

Hide Comments | Add Comment






21kb generated in 0.0484 seconds; 71 queries returned 218 records.
Powered by Minx 1.1.4-pink.