home.social

#adobereader — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #adobereader, aggregated by home.social.

fetched live
  1. Phishing Attacks Serve Browser-in-the-Browser Pages, Rogue RMM Persistence

    Two sophisticated phishing campaigns employed browser-in-the-browser (BiTB) techniques to deceive victims into installing rogue ScreenConnect remote management tools. Attackers sent phishing messages with malicious links redirecting targets to fake Adobe Reader update pages. The BiTB technique created convincing fake browser windows within webpages, displaying legitimate-looking Adobe URLs to bypass user awareness training. Victims were tricked into downloading ScreenConnect installers disguised as Adobe software updates. Each incident resulted in deployment of multiple rogue ScreenConnect instances for redundant persistence, followed by execution of defense-evasion binaries (HideCursor.exe and HideUL.exe) designed to hide attacker activities. The attacks established service-based persistence through Windows services, enabling continued remote access. Both campaigns were intercepted before further damage occurred, demonstrating how threat actors combine social engineering throughout the entire attack chain...

    Pulse ID: 6aa181782eb83db70c28a2a7
    Pulse Link: otx.alienvault.com/pulse/6aa18
    Pulse Author: AlienVault
    Created: 2026-09-09 15:55:36

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Adobe #AdobeReader #Browser #CyberSecurity #FakeBrowser #InfoSec #OTX #OpenThreatExchange #Phishing #RAT #RCE #ScreenConnect #SocialEngineering #Windows #bot #AlienVault

  2. Phishing Attacks Serve Browser-in-the-Browser Pages, Rogue RMM Persistence

    Two sophisticated phishing campaigns employed browser-in-the-browser (BiTB) techniques to deceive victims into installing rogue ScreenConnect remote management tools. Attackers sent phishing messages with malicious links redirecting targets to fake Adobe Reader update pages. The BiTB technique created convincing fake browser windows within webpages, displaying legitimate-looking Adobe URLs to bypass user awareness training. Victims were tricked into downloading ScreenConnect installers disguised as Adobe software updates. Each incident resulted in deployment of multiple rogue ScreenConnect instances for redundant persistence, followed by execution of defense-evasion binaries (HideCursor.exe and HideUL.exe) designed to hide attacker activities. The attacks established service-based persistence through Windows services, enabling continued remote access. Both campaigns were intercepted before further damage occurred, demonstrating how threat actors combine social engineering throughout the entire attack chain...

    Pulse ID: 6aa181782eb83db70c28a2a7
    Pulse Link: otx.alienvault.com/pulse/6aa18
    Pulse Author: AlienVault
    Created: 2026-09-09 15:55:36

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Adobe #AdobeReader #Browser #CyberSecurity #FakeBrowser #InfoSec #OTX #OpenThreatExchange #Phishing #RAT #RCE #ScreenConnect #SocialEngineering #Windows #bot #AlienVault

  3. Phishing Attacks Serve Browser-in-the-Browser Pages, Rogue RMM Persistence

    Two sophisticated phishing campaigns employed browser-in-the-browser (BiTB) techniques to deceive victims into installing rogue ScreenConnect remote management tools. Attackers sent phishing messages with malicious links redirecting targets to fake Adobe Reader update pages. The BiTB technique created convincing fake browser windows within webpages, displaying legitimate-looking Adobe URLs to bypass user awareness training. Victims were tricked into downloading ScreenConnect installers disguised as Adobe software updates. Each incident resulted in deployment of multiple rogue ScreenConnect instances for redundant persistence, followed by execution of defense-evasion binaries (HideCursor.exe and HideUL.exe) designed to hide attacker activities. The attacks established service-based persistence through Windows services, enabling continued remote access. Both campaigns were intercepted before further damage occurred, demonstrating how threat actors combine social engineering throughout the entire attack chain...

    Pulse ID: 6aa181782eb83db70c28a2a7
    Pulse Link: otx.alienvault.com/pulse/6aa18
    Pulse Author: AlienVault
    Created: 2026-09-09 15:55:36

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Adobe #AdobeReader #Browser #CyberSecurity #FakeBrowser #InfoSec #OTX #OpenThreatExchange #Phishing #RAT #RCE #ScreenConnect #SocialEngineering #Windows #bot #AlienVault

  4. Got an old #Samsung Galaxy Tab S3 #tablet I was gifted by a relative a few years back (he upgraded to a newer one).

    I use it mostly to read #PDF documents of scanned #books about #oldtimers , #mechanic work and #electronics (so these are quite big PDF files).

    Normal #AdobeReader is laggy on this old device, and I don't need the #AI bullshit bundled with it.

    Can anyone suggest a better PDF reader for Android with 0 ads, decent privacy and good performance?

  5. Got an old #Samsung Galaxy Tab S3 #tablet I was gifted by a relative a few years back (he upgraded to a newer one).

    I use it mostly to read #PDF documents of scanned #books about #oldtimers , #mechanic work and #electronics (so these are quite big PDF files).

    Normal #AdobeReader is laggy on this old device, and I don't need the #AI bullshit bundled with it.

    Can anyone suggest a better PDF reader for Android with 0 ads, decent privacy and good performance?

  6. Got an old #Samsung Galaxy Tab S3 #tablet I was gifted by a relative a few years back (he upgraded to a newer one).

    I use it mostly to read #PDF documents of scanned #books about #oldtimers , #mechanic work and #electronics (so these are quite big PDF files).

    Normal #AdobeReader is laggy on this old device, and I don't need the #AI bullshit bundled with it.

    Can anyone suggest a better PDF reader for Android with 0 ads, decent privacy and good performance?

  7. Luka zero-day w Adobe Reader: wystarczy otworzyć zainfekowany plik PDF, aby przejąć kontrolę nad systemem

    Badacze bezpieczeństwa z EXPMON przedstawili analizę podatności typu zero-day wymierzonej w użytkowników Adobe Reader. Próbka o nazwie yummy_adobe_exploit_uwu.pdf zawierająca malware została wgrana do systemu EXPMON pod koniec marca 2026 r. TLDR: Wyniki analizy przeprowadzonej przez system potwierdziły, że próbka posiada cechy potencjalnie złośliwego oprogramowania. Nie udało się jednoznacznie przypisać jej...

    #Aktualności #AdobeReader #Malware #Pdf #Rce

    sekurak.pl/luka-zero-day-w-ado

  8. Luka zero-day w Adobe Reader: wystarczy otworzyć zainfekowany plik PDF, aby przejąć kontrolę nad systemem

    Badacze bezpieczeństwa z EXPMON przedstawili analizę podatności typu zero-day wymierzonej w użytkowników Adobe Reader. Próbka o nazwie yummy_adobe_exploit_uwu.pdf zawierająca malware została wgrana do systemu EXPMON pod koniec marca 2026 r. TLDR: Wyniki analizy przeprowadzonej przez system potwierdziły, że próbka posiada cechy potencjalnie złośliwego oprogramowania. Nie udało się jednoznacznie przypisać jej...

    #Aktualności #AdobeReader #Malware #Pdf #Rce

    sekurak.pl/luka-zero-day-w-ado

  9. Luka zero-day w Adobe Reader: wystarczy otworzyć zainfekowany plik PDF, aby przejąć kontrolę nad systemem

    Badacze bezpieczeństwa z EXPMON przedstawili analizę podatności typu zero-day wymierzonej w użytkowników Adobe Reader. Próbka o nazwie yummy_adobe_exploit_uwu.pdf zawierająca malware została wgrana do systemu EXPMON pod koniec marca 2026 r. TLDR: Wyniki analizy przeprowadzonej przez system potwierdziły, że próbka posiada cechy potencjalnie złośliwego oprogramowania. Nie udało się jednoznacznie przypisać jej...

    #Aktualności #AdobeReader #Malware #Pdf #Rce

    sekurak.pl/luka-zero-day-w-ado

  10. Microsoft Rushes Fixes for 167 Vulnerabilities Amid Zero-Day Exploits

    Microsoft just rolled out urgent Patch Tuesday fixes for a whopping 167 vulnerabilities in Windows and related software, including zero-day exploits in SharePoint Server and Windows Defender. But with threats evolving at breakneck speed, can patches keep up to protect our increasingly software-reliant lives?

    osintsights.com/microsoft-rush

    #PatchTuesday #ZeroDay #Bluehammer #GoogleChrome #AdobeReader

  11. Urgent Alert: Adobe Reader Zero-Click Attack Exploit Ongoing

    Cybersecurity experts report a critical, active zero-day exploit in Adobe Reader. Merely opening a weaponized PDF can trigger malicious code execution without any further clicks! Fortunately, an official patch is now available. Update your software immediately to stay protected. #CyberSecurity #AdobeReader #ZeroDay #UpdateNow

  12. Seit Dezember 2025 wird eine Zero-Day-Schwachstelle im Adobe Reader aktiv ausgenutzt – und das, ohne dass ein Patch verfügbar war. Ein einziges präpariertes PDF-Dokument genügt, um über eine ungepatchte API-Schwachstelle sensible Systemdaten auszulesen und an externe Server zu übermitteln. Sofortmaßnahmen: Adobe Reader auf Version 26.001.21411 aktualisieren – der Patch ist seit 10. April 2026 verfügbar. #CyberSecurity #Cybercrime #ZeroDay #AdobeReader #pdf #Hackerangriff

  13. Seit Dezember 2025 wird eine Zero-Day-Schwachstelle im Adobe Reader aktiv ausgenutzt – und das, ohne dass ein Patch verfügbar war. Ein einziges präpariertes PDF-Dokument genügt, um über eine ungepatchte API-Schwachstelle sensible Systemdaten auszulesen und an externe Server zu übermitteln. Sofortmaßnahmen: Adobe Reader auf Version 26.001.21411 aktualisieren – der Patch ist seit 10. April 2026 verfügbar. #CyberSecurity #Cybercrime #ZeroDay #AdobeReader #pdf #Hackerangriff

  14. Seit Dezember 2025 wird eine Zero-Day-Schwachstelle im Adobe Reader aktiv ausgenutzt – und das, ohne dass ein Patch verfügbar war. Ein einziges präpariertes PDF-Dokument genügt, um über eine ungepatchte API-Schwachstelle sensible Systemdaten auszulesen und an externe Server zu übermitteln. Sofortmaßnahmen: Adobe Reader auf Version 26.001.21411 aktualisieren – der Patch ist seit 10. April 2026 verfügbar. #CyberSecurity #Cybercrime #ZeroDay #AdobeReader #pdf #Hackerangriff

  15. 《Angreifer nutzen derzeit eine Zero-Day-Lücke in Adobe Reader aus. Bis es ein Sicherheitsupdate gibt, sollte man keine PDFs aus unbekannten Quellen öffnen.》

    Warten auf Sicherheitsupdate: Angreifer attackieren #AdobeReader | Security heise.de/news/Warten-auf-Siche #exploit #ZeroDay #0day

  16. 《Angreifer nutzen derzeit eine Zero-Day-Lücke in Adobe Reader aus. Bis es ein Sicherheitsupdate gibt, sollte man keine PDFs aus unbekannten Quellen öffnen.》

    Warten auf Sicherheitsupdate: Angreifer attackieren #AdobeReader | Security heise.de/news/Warten-auf-Siche #exploit #ZeroDay #0day

  17. Adobe Readerのゼロデイ脆弱性が数ヶ月間悪用されていた - GIGAZINE
    gigazine.net/news/20260410-ado

    『記事作成時点ではAdobeは公式な声明を発表しておらず、Adobe Readerの修正パッチ等も公開されていないため、セキュリティ研究者らは「未知のソースからPDFを開く習慣のあるユーザーは注意が必要」と呼びかけています』

    #AdobeReader #PDF

  18. Adobe Readerのゼロデイ脆弱性が数ヶ月間悪用されていた - GIGAZINE
    gigazine.net/news/20260410-ado

    『記事作成時点ではAdobeは公式な声明を発表しておらず、Adobe Readerの修正パッチ等も公開されていないため、セキュリティ研究者らは「未知のソースからPDFを開く習慣のあるユーザーは注意が必要」と呼びかけています』

    #AdobeReader #PDF

  19. Adobe Readerのゼロデイ脆弱性が数ヶ月間悪用されていた - GIGAZINE
    gigazine.net/news/20260410-ado

    『記事作成時点ではAdobeは公式な声明を発表しておらず、Adobe Readerの修正パッチ等も公開されていないため、セキュリティ研究者らは「未知のソースからPDFを開く習慣のあるユーザーは注意が必要」と呼びかけています』

    #AdobeReader #PDF

  20. An zero-day vulnerability is being actively exploited via malicious PDFs, allowing hackers to steal data without user interaction, with no patch available.

    Read: hackread.com/adobe-reader-zero

  21. An #AdobeReader zero-day vulnerability is being actively exploited via malicious PDFs, allowing hackers to steal data without user interaction, with no patch available.

    Read: hackread.com/adobe-reader-zero

    #CyberSecurity #Adobe #Vulnerability #0day #PDF

  22. An #AdobeReader zero-day vulnerability is being actively exploited via malicious PDFs, allowing hackers to steal data without user interaction, with no patch available.

    Read: hackread.com/adobe-reader-zero

    #CyberSecurity #Adobe #Vulnerability #0day #PDF

  23. Adobe Reader Zero-Day Exploits PDFs to Profile Targets

    Malicious PDFs are being used to secretly profile targets, leveraging legitimate features to harvest system data and decide which victims are worthy of a second, more invasive attack. This sneaky tactic uses booby-trapped PDFs to quietly gather intel and determine if you're a high-value target.

    osintsights.com/adobe-reader-z

    #ZeroDay #AdobeReader #MaliciousPdfs #EmergingThreats #Exploit

  24. Adobe Reader Zero-Day Exploited in Targeted Attacks Since December

    A previously unknown zero-day vulnerability in Adobe Reader has been exploited in targeted attacks since December, using maliciously crafted PDF documents to quietly turn trusted files into stealthy threats. This highly sophisticated exploit raises serious questions about the security of everyday file formats and our trust in them.

    osintsights.com/adobe-reader-z

    #ZeroDay #AdobeReader #Exploit #TargetedAttacks #EmergingThreats

  25. "Adobe Reader ciblé par une faille zero-day sans correctif disponible"

    "Des pirates (NDR Cybercriminels) exploitent actuellement une faille de sécurité non répertoriée qui touche le logiciel de lecture de documents le plus utilisé au monde: Adobe Reader. L’alerte vient du chercheur Haifei Li, qui gère la plateforme d’analyse de menaces EXPMON, après avoir découvert un échantillon suspect baptisé « yummy_adobe_exploit_uwu.pdf » sur les moteurs d'analyse publics le 23 mars dernier. Cette attaque de type zero-day permet à un tiers de lire des fichiers arbitraires sur un ordinateur Windows dès l'ouverture du document en contournant les barrières de protection habituelles, les sandboxes. Adobe n'a pas encore diffusé de mise à jour pour colmater cette brèche, ce qui laisse les entreprises et les particuliers sans défense officielle et donc vulnérables."

    ...

    "Pour vous protéger efficacement, vous devez d'abord limiter l'usage du logiciel complet d'Adobe pour les fichiers dont vous ne connaissez pas l'origine exacte. Préférez systématiquement l'ouverture de vos PDF via votre navigateur web, car Chrome ou Firefox disposent de protections isolées qui bloquent souvent l'exécution des scripts malveillants."
    👇
    clubic.com/actualite-608221-ad

    Source originale [EN]
    ⬇️
    "EXPMON detected sophisticated zero-day fingerprinting attack targeting Adobe Reader users"
    👇
    justhaifei1.blogspot.com/2026/

    💬
    ⬇️
    infosec.pub/post/44692884

    #CyberVeille #AdobeReader

  26. "Adobe Reader ciblé par une faille zero-day sans correctif disponible"

    "Des pirates (NDR Cybercriminels) exploitent actuellement une faille de sécurité non répertoriée qui touche le logiciel de lecture de documents le plus utilisé au monde: Adobe Reader. L’alerte vient du chercheur Haifei Li, qui gère la plateforme d’analyse de menaces EXPMON, après avoir découvert un échantillon suspect baptisé « yummy_adobe_exploit_uwu.pdf » sur les moteurs d'analyse publics le 23 mars dernier. Cette attaque de type zero-day permet à un tiers de lire des fichiers arbitraires sur un ordinateur Windows dès l'ouverture du document en contournant les barrières de protection habituelles, les sandboxes. Adobe n'a pas encore diffusé de mise à jour pour colmater cette brèche, ce qui laisse les entreprises et les particuliers sans défense officielle et donc vulnérables."

    ...

    "Pour vous protéger efficacement, vous devez d'abord limiter l'usage du logiciel complet d'Adobe pour les fichiers dont vous ne connaissez pas l'origine exacte. Préférez systématiquement l'ouverture de vos PDF via votre navigateur web, car Chrome ou Firefox disposent de protections isolées qui bloquent souvent l'exécution des scripts malveillants."
    👇
    clubic.com/actualite-608221-ad

    Source originale [EN]
    ⬇️
    "EXPMON detected sophisticated zero-day fingerprinting attack targeting Adobe Reader users"
    👇
    justhaifei1.blogspot.com/2026/

    💬
    ⬇️
    infosec.pub/post/44692884

    #CyberVeille #AdobeReader

  27. "Adobe Reader ciblé par une faille zero-day sans correctif disponible"

    "Des pirates (NDR Cybercriminels) exploitent actuellement une faille de sécurité non répertoriée qui touche le logiciel de lecture de documents le plus utilisé au monde: Adobe Reader. L’alerte vient du chercheur Haifei Li, qui gère la plateforme d’analyse de menaces EXPMON, après avoir découvert un échantillon suspect baptisé « yummy_adobe_exploit_uwu.pdf » sur les moteurs d'analyse publics le 23 mars dernier. Cette attaque de type zero-day permet à un tiers de lire des fichiers arbitraires sur un ordinateur Windows dès l'ouverture du document en contournant les barrières de protection habituelles, les sandboxes. Adobe n'a pas encore diffusé de mise à jour pour colmater cette brèche, ce qui laisse les entreprises et les particuliers sans défense officielle et donc vulnérables."

    ...

    "Pour vous protéger efficacement, vous devez d'abord limiter l'usage du logiciel complet d'Adobe pour les fichiers dont vous ne connaissez pas l'origine exacte. Préférez systématiquement l'ouverture de vos PDF via votre navigateur web, car Chrome ou Firefox disposent de protections isolées qui bloquent souvent l'exécution des scripts malveillants."
    👇
    clubic.com/actualite-608221-ad

    Source originale [EN]
    ⬇️
    "EXPMON detected sophisticated zero-day fingerprinting attack targeting Adobe Reader users"
    👇
    justhaifei1.blogspot.com/2026/

    💬
    ⬇️
    infosec.pub/post/44692884

    #CyberVeille #AdobeReader

  28. Adobe Reader zero-day flaw under active exploitation

    Malicious PDF documents have been hiding a nasty secret: a zero-day vulnerability in Adobe Reader that's been exploited by attackers since at least December, allowing them to spread malware and wreak havoc. This stealthy threat highlights the urgent need for better detection and response to these types of attacks.

    osintsights.com/adobe-reader-z

    #ZeroDay #AdobeReader #EmergingThreats #VulnerabilityExploitation #MaliciousDocuments