funsec mailing list archives

Re: Yet Another Emerging Web 2.0 Security Threat: Adobe Integ rated Runtime (AIR)


From: "Paul Ferguson" <fergdawg () netzero net>
Date: Mon, 25 Feb 2008 15:37:02 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -- "Richard M. Smith" <rms () computerbytesman com> wrote:

Does anyone know of malware which use security flaws in Flash to do their
dirty work?  

It's not so much "...malware which uses security flaws in Flash..."
as it is flaws in Flash which allows for embedded scripting, XSS,
and CSRF...

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.3 (Build 3017)

wj8DBQFHwuCbq1pz9mNUZTMRAjv3AJ0Y3VeEXizrNZbN7iDoQnQt9hCHfQCgtNEv
uRwyQKDJoCtSNEyxNS18p8A=
=7YNk
-----END PGP SIGNATURE-----



--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: