3 ms·
As someone totally ignorant in this space, how does opening a .PDF document allow for email hijacking (assuming it was actually a PDF)? I think I'm stuck at ho
by FlyingLawnmower 11y ago
As someone totally ignorant in this space, how does opening a .PDF document allow for email hijacking (assuming it was actually a PDF)?
I think I'm stuck at how code is able to execute when opening a document inside a PDF viewer or something of the sort. Thanks for sharing your story!
- aaronbasssett 11y agoPDFs support scripting as well as the ability to embed other media such as Flash files. http://www.malwaretracker.com/pdfthreat.php http://www.malwaretracker.com/pdfthreat.php
- cocolos 11y agoIf it's a pdf it could be a bug in Adobe Reader that allows the hackers to spread a virus
- CiPHPerCoder 11y agoUsually some variant of: The PDF file contains binary data somewhere within it that will cause a particular PDF reader to misallocate memory. Because data and code are jammed next to each other when you run a program, a clever memory misallocation can be used to rewrite the program (the PDF reader) as it executes in order to execute whatever malicious commands the author of said PDF file intends. The typical defenses against these attacks include: * Exploit mitigation tools, such as EMET * Writing applications to be more memory-safe * Various other tactics, many of them disingenuous.