Attackers gun for new ActiveX flaws

Powered by SC Magazine
 

Exploit code has been released for three ActiveX security flaws, one of which is already being exploited in the wild.

The vulnerabilities target ActiveX plug-ins used by Microsoft's Internet Explorer to load files from third-party applications.

The exploits target popular sites such as MySpace, Facebook and Yahoo's Music Jukebox.

Two of the three vulnerabilities targeted by the exploit code lie within Music Jukebox.

Symantec reported that attackers have already begun exploiting one of the vulnerabilities in order to remotely install malware on targeted systems.

"So far the exploits used in the wild have been carbon copies of the public exploit," wrote Symantec researcher Sean Hittel on a company blog.

"I suspect that it will not take long before the exploit is wrapped in an encoder in an attempt to make detection more difficult."

Facebook and MySpace are vulnerable to the same flaw, a vulnerability in the Aurigma Image Uploader tool.

If exploited, the vulnerability could allow an attacker to remotely execute code with the permissions of the current user.

The US Computer Emergency Response Team urged users to disable ActiveX controls in Internet Explorer.

Copyright ©v3.co.uk


Attackers gun for new ActiveX flaws
 
 
 
Top Stories
CIO exits as Coles steps up offshoring
Updated: Engages Accenture in Manila; staff to learn of their fate today.
 
Matching databases to Linux distros
Reviewed: OS-repository DBMSs, MariaDB vs MySQL.
 
Coalition's NBN cost-benefit study finds in favour of MTM
FTTP costs too much, would take too long.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Which is the most prevalent cyber attack method your organisation faces?




   |   View results
Phishing and social engineering
  71%
 
Advanced persistent threats
  3%
 
Unpatched or unsupported software vulnerabilities
  11%
 
Denial of service attacks
  6%
 
Insider threats
  10%
TOTAL VOTES: 794

Vote