3/8/2009

PDF Vulnerability Now Exploitable With No Clicking

Filed under: — Aviran Mordo

With Adobe’s patch for the current PDF vulnerability still some time away, news has emerged of more techniques that are available to exploit the vulnerability, this time without needing the victim to actually open a malicious file.

Instead, the methods make use of a Windows Explorer Shell Extension that is installed alongside Adobe Reader, and which will trigger the exploitable code when the file is interacted with in Windows Explorer. Methods have been demonstrated of successful exploitation with a single click, with thumbnail view, and with merely hovering the mouse cursor over the affected file. There are many ways that exploits targeting the JBIG2 vulnerability could be hidden inside a PDF file, and it seems that the reliability of detection for these varying methods is spotty, at best.”

Play Unreal Tournament III Black for free this weekend

Filed under: — Aviran Mordo

Have any plans for the weekend? If not, here’s a suggestion: how’s about some online Capture-the-Flag action (or Deathmatch action, whatever floats your boat) on Unreal Tournament III Black. Oh, and it’s free. OK, so it’s for the PC only and doesn’t apply to the PlayStation 3, but it’s still a pretty cool deal and it’s something to do.

Whether or not you have the game, it’s all good. The free weekend includes the game, the Titan Pack expansion, and the 2.0 patch. Now, all you have to do is sign up for a Steam account, which is also free, and you are good to go.

After the entire weekend hullabaloo dies down, Unreal Tournament III Black will be available on Steam at a 40 percent discount, costing around 12 bucks, and will remain so, right up until March 15.

Web

Filed under: — Aviran Mordo

A single check box deep in the guts of the next version of Windows is giving Microsoft Corp. watchers a peek at how the software maker plans to keep European antitrust regulators from marring a crucial software launch.

Windows 7, the successor to the much-maligned Vista, isn’t expected to reach consumers until next year, but more than a million people are already testing early versions. A pair of bloggers tinkering with settings stumbled upon one they hadn’t seen before: The ability to “turn off” Microsoft’s own Internet Explorer browser.

Microsoft lost a long-running battle with EU antitrust regulators in 2007 over the way it bundled media player software into the Windows operating system. The dust had barely settled when a similar claim was filed, this time over Internet Explorer’s place inside Windows. Opera Software ASA, a Norwegian competitor, claimed the practice gives Microsoft’s browser an unfair advantage.

Powered by WordPress