Adobe Issues Emergency Update to Flash After Ransomware Attacks

Advertisement
By Reuters | Updated: 8 April 2016 09:27 IST
Adobe Systems Inc issued an emergency update on Thursday to its widely used Flash software for Internet browsers after researchers discovered a security flaw that was being exploited to deliver ransomware to Windows PCs.

The software maker urged the more than 1 billion users of Flash on Windows, Mac, Chrome and Linux computers to update the product as quickly as possible after security researchers said the bug was being exploited in "drive-by" attacks that infect computers with ransomware when tainted websites are visited.

Ransomware encrypts data, locking up computers, then demands payments that often range from $200 to $600 to unlock each infected PC.

Adobe's new patch fixes a previously unknown security flaw. Such bugs, known as "zero days," are highly prized because they are harder to defend against since software makers and security firms have not had time to figure out ways to block them. They are typically used by nation states for espionage and sabotage, not by cybercriminals who tend to use widely known bugs for their attacks.

Advertisement

Use of a "zero day" to distribute ransomware highlights the severity of a growing ransomware epidemic, which has disrupted operations at a wide range of organizations across the United States and Europe, including hospitals, police stations and school districts.

Advertisement

Last week, the US and Canadian governments issued a warning about the growing threat as a ransomware attack shut down computer systems at MedStar Health, the largest hospital chain in the Washington, DC, area.

Ransomware schemes have boomed in recent months, with increasingly sophisticated techniques and tools used in such operations.

Advertisement

"The deployment of a zero day highlights potential advancement by cybercriminals," said Kyrk Storer, a spokesman for FireEye Inc, which helped analyse the vulnerability and attacks. "We have observed ransomware and crimeware deployed via 'zero-day' before; however, it is rare."

FireEye said that the bug was being leveraged to deliver ransomware in what is known as the Magnitude Exploit Kit. This is an automated tool sold on underground forums that hackers use to infect PCs with viruses through tainted websites.

Advertisement

Exploit kits are used for "drive-by" attacks that automatically seek to attack the computers of people who view an infected website.

Adobe said the issue was brought to its attention by researchers with FireEye, Alphabet Inc's Google and email security provider ProofPoint.

© Thomson Reuters 2016

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Adobe, Apps, Internet, Ransomware
Advertisement

Related Stories

Popular Mobile Brands
  1. iPhone 16 Price Drops Under Rs. 63,000 on Croma With Bank Discounts
  2. Motorola Edge 70 India Launch Date Leaked; Might Arrive With Bigger Battery
  3. Here's How Much the Samsung Galaxy Z TriFold May Cost in India
  4. Google Photos 2025 Recap Rolls Out With Your Best Photo, Video Moments
  5. Realme P4x 5G Launch Today: Know Price in India, Specs and More
  6. Motorola Edge 70 Ultra Leaked Renders Hint at Design, Colourways
  7. Nothing Phone 3a Community Edition Will Launch on This Date
  1. Realme P4x 5G Launching Today: Know Price in India, Features, Specifications and More
  2. Pariah OTT Release: Vikram Chatterjee’s Heart-Wrenching Stray Dog Thriller Set for OTT Debut
  3. Dies Irae OTT Release: When, Where to Watch Pranav Mohanlal's Malayalam Horror Thriller Online
  4. A Nearby Planet May Have Formed the Moon Following a Collision With Early Earth: Study
  5. Netflix’s Gritty Frontier Drama The Abandons to Begin Streaming Soon: All You Need to Know
  6. Superman OTT Release Date Announced: Everything You Need to Know About Clark Kent's Latest Adventure
  7. International Space Station Makes History As Eight Visiting Spacecraft Simultaneously Dock
  8. Dulquer Salmaan’s Kaantha Set for OTT Debut: When and Where to Watch 1950's Period Drama Online?
  9. Motorola Edge 70 India Launch Date Leaked; Indian Variant Said to Feature Bigger Battery, Slim Design
  10. SpaceX Adds 29 New Starlink Satellites in Successful Falcon 9 Launch
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.