Adobe Issues Emergency Update to Flash After Ransomware Attacks

Advertisement
By Reuters | Updated: 8 April 2016 09:27 IST
Adobe Issues Emergency Update to Flash After Ransomware Attacks
Adobe Systems Inc issued an emergency update on Thursday to its widely used Flash software for Internet browsers after researchers discovered a security flaw that was being exploited to deliver ransomware to Windows PCs.

The software maker urged the more than 1 billion users of Flash on Windows, Mac, Chrome and Linux computers to update the product as quickly as possible after security researchers said the bug was being exploited in "drive-by" attacks that infect computers with ransomware when tainted websites are visited.

Ransomware encrypts data, locking up computers, then demands payments that often range from $200 to $600 to unlock each infected PC.

Adobe's new patch fixes a previously unknown security flaw. Such bugs, known as "zero days," are highly prized because they are harder to defend against since software makers and security firms have not had time to figure out ways to block them. They are typically used by nation states for espionage and sabotage, not by cybercriminals who tend to use widely known bugs for their attacks.

Use of a "zero day" to distribute ransomware highlights the severity of a growing ransomware epidemic, which has disrupted operations at a wide range of organizations across the United States and Europe, including hospitals, police stations and school districts.

Advertisement

Last week, the US and Canadian governments issued a warning about the growing threat as a ransomware attack shut down computer systems at MedStar Health, the largest hospital chain in the Washington, DC, area.

Ransomware schemes have boomed in recent months, with increasingly sophisticated techniques and tools used in such operations.

Advertisement

"The deployment of a zero day highlights potential advancement by cybercriminals," said Kyrk Storer, a spokesman for FireEye Inc, which helped analyse the vulnerability and attacks. "We have observed ransomware and crimeware deployed via 'zero-day' before; however, it is rare."

FireEye said that the bug was being leveraged to deliver ransomware in what is known as the Magnitude Exploit Kit. This is an automated tool sold on underground forums that hackers use to infect PCs with viruses through tainted websites.

Advertisement

Exploit kits are used for "drive-by" attacks that automatically seek to attack the computers of people who view an infected website.

Adobe said the issue was brought to its attention by researchers with FireEye, Alphabet Inc's Google and email security provider ProofPoint.

© Thomson Reuters 2016

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Further reading: Adobe, Apps, Internet, Ransomware
Advertisement

Related Stories

Popular Mobile Brands
  1. China's Dragon Man Skull Found to Belong to Denisovan Lineage
  1. China’s Dragon Man Skull Found to Belong to Denisovan Lineage
  2. Is Mars Really Red? A Physicist Explains the Science Behind Its Colour and More
  3. Scientists Spotted the Largest Comet Lying in the Solar System’s Outskirts with Outbursting Gases
  4. SpaceX Starship Rocket Explodes During Ground Test at Texas Launch Pad
  5. NASA Postpones Axiom Mission 4 Launch to Ensure Space Station Readiness After Repairs
  6. Doom: The Dark Ages Review: Rip and Tear, Medieval Style
  7. Save Nalla Pasanga Now Streaming on Aha Tamil: Everything You Need to Know About Romantic Web Series
  8. Yugi Tamil Movie Now Streaming on Aha: A Gritty Tale of Crime, Surrogacy, and Revenge
  9. Lovely Now Available on Amazon Prime Video: What You Need to Know About Malayalam Fantasy Drama
  10. The Hunt- The Rajiv Gandhi Assassination Case OTT Release Date Revealed
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.