Tag Archives: exploit

Escalating Java Attacks

If you’re into malware analysis or incident response, I’m sure you’ve come across a number of malicious Java applets lately. And perhaps you’ve noticed some new tactics being employed which are quite clever and probably effective in getting past perimeter … Continue reading

Posted in Exploit Packs | Tagged , , , , , | 1 Comment

CVE-2011-2140 Caught in the Wild

A Chinese website contains malvertisement that leads to a few exploits including the latest Flash exploit (CVE-2011-2140). Special thanks to Jason for the find and share! Here’s the website that kicks things off: This is the infection chain: It’s quite … Continue reading

Posted in 0-Day, Exploit Packs, Malscript | Tagged , , , , | 2 Comments

Java Exploit Construction Kit

Websense put out a blog post late last year that shocked me and probably the rest of the security world about how many Java exploit attempts there were compared to PDF exploits. Based on reports I’ve read throughout the year, … Continue reading

Posted in Exploit Packs | Tagged , , | Comments Off on Java Exploit Construction Kit

Saved By A Single Character

You can tell it’s nearing the holidays as many of us start trading virtual greeting cards. One of my colleagues’ boss received an email inviting him to retrieve a virtual greeting card from his friend Mary. The links showed that … Continue reading

Posted in Malscript | Tagged , , | Comments Off on Saved By A Single Character