Security News Hackers Actively Attacking Adobe Reader Users Using Sophisticated 0-Day Exploit

Parkinsond

Level 63
Thread author
Verified
Top Poster
Well-known
Dec 6, 2023
5,040
15,162
6,169
A highly sophisticated, unpatched zero-day exploit is actively targeting users of Adobe Reader. Detected by the EXPMON threat-hunting system, this malicious PDF file is designed to steal sensitive local data and perform advanced system fingerprinting.

The malware successfully bypassed traditional antivirus tools, scoring a low initial detection rate on public scanning engines.

However, it triggered EXPMON’s advanced behavioral analytics by exhibiting highly suspicious activities within the Acrobat JavaScript engine.

Once de-obfuscated and opened, the exploit abuses an unpatched vulnerability to execute privileged programming commands.

No official patch from Adobe is available to prevent the initial data theft.

 
Capture.JPG