Get the App
SLTechnology News&Howtos  ›  Computer Software News  › 

The FlashPlayer plug-in reveals a new security flaw: allowing attackers to plant malware into PC

Shulou Source: shulou.com Published: 2022-05-31 10:34:41 09月30日 Update

­as long as Adobe Flash Player exists on the computer for a day, it can't avoid being attacked by everyone because it is full of troughs. Recently, the Flash Player plug-in exposed another security vulnerability that allows attackers to inject malware into the target PC. Unfortunately, this vulnerability affects the entire platform of Linux, Mac, Chrome OS, and Windows, while Adobe fixes are not fast. The malware was first discovered by security company Kaspersky Labs and is called "FinSpy" or "FinFisher" because the method is often used by intelligence law enforcement agencies for surveillance purposes.

­Reuters reported that Kaspersky Labs was actively pursuing a hacker group called BlackOasis. Before connecting to servers in the Netherlands, Switzerland, and Bulgaria, they had successfully implanted malware into their computers with the help of Adobe Flash Player vulnerabilities.

­BlackOasis is reported to have used FinSpy to launch attacks on UN officials and Middle Eastern politicians, as well as regional journalists, activists and opposition bloggers. In addition, victims were also reported in Britain, Russia, Africa, Iraq, Iran and Afghanistan.

­Adobe Systems said earlier this year that it intended to let the flawed Flash Player plug-in die within two years.

However, until 2020, people will still be vulnerable to malware such as FinSpy, so Adobe will have to make a last-ditch effort to speed up bug fixes.

­[compiled from: Soft Pedia]

Tags: Vulnerabilities malware attacks security plug-ins labs speed Kabbah Sky experiments security vulnerabilities attackers bad dead full of holes activists unhappiness molecules opposition Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno OPPO Reno MariaDB MySQL Apple vpn