Metasploit mailing list archives

Re: What is the hottest exploit for IE and FF?


From: Richard Miles <richard.k.miles () googlemail com>
Date: Thu, 27 Oct 2011 10:12:33 -0500

Hi todb,

Thanks for info. I tested this one yesterday, but it appear to only
work in very specific version of Adobe, in my Windows XP SP in Spanish
with Adobe 9.2.0 it failed - just crash.

Additionally, my AV detects it all the time. There is any kind of
evasion that may be applied to PDF?

Thanks

On Thu, Oct 27, 2011 at 7:40 AM, todb <todb () metasploit com> wrote:
On 10/26/2011 06:36 PM, Richard Miles wrote:

Or, maybe the hottest exploit for browsers is in an common 3rd party
app? Such as flash? Adobe (opened from browser)?

I'm not sure what "hot" means in this context.

If it means "reliable," then I'm a huge fan of jduck's Adobe CoolType SING
Table module. I can't shut up about it.

http://www.metasploit.com/modules/exploit/windows/browser/adobe_cooltype_sing

https://community.rapid7.com/community/metasploit/blog/2011/10/10/client-side-exploit-testing-with-adobecooltypesing

_______________________________________________
https://mail.metasploit.com/mailman/listinfo/framework


Current thread: