igotspam
PDF Spam Returns
Filed in archive Spam News by Sue Walsh on November 2, 2007
PDF Spam Returns
PDF spam is back and this time it's more than just a nuisance. According to researchers at several security vendors, a new attack was launched last week, sending tens of thousands of spam messages across the web. This new attack appears finance related, with subject lines touting things like free credit reports.
"When opened, the PDF file uses the CVE-2007-5020 vulnerability via acrobat reader and [Internet Explorer 7.0] and downloads further malware from a server in Malaysia," according to security vendor F-Secure's recent blog post. "The target of the malware seems to be to create a botnet of infected machines to be used for further malicious activity."

The PDF spam attack from this summer showed that spammers have a creative side, having figured out that most spam filters aren't able to read PDF attachments. That attack was harmless. The attachments sent then simply hawked various stocks. Now the attack is more dangerous because the attachments unleash malware.
Spammers will "exploit any vulnerabilities they can, which in Windows is about a quadrillion different places," says John Levine [stet], president of consulting firm Taughannock Networks and co-chair of the Internet Engineering Task Force's Anti-Spam Research Group, adding that he believes this PDF spam blast to be the latest incarnation of the Storm malware. "Using Acrobat has the added advantage that it works regardless of what mail program you use, so even people who use Eudora or Thunderbird could get bitten."

Adobe released a security update for Acrobat and Adobe Reader on October 22.



Permalink: PDF Spam Returns
Tags: spam  spammers  malware  PDF  spam  malicious  attachments  2007  spam+returns 
Trackback: http://publish.creative-weblogging.com/publish/mt-tb.pl/100060
img Addthis img Ask img Blinklist img del.icio.us img Digg img Fark img Facebook img Google img Lycos img Ma.gnolia Add this page to Mister Wong Mr Wong img Netscape img Netvousz img Newsvine img Reddit img StumbleUpon img Slashdot img Tailrank img Technorati img Wink img Yahoo

Vote for PDF Spam Returns:

  • Currently 8.00/10
  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
Rating: 8.00 out of 4 vote(s) cast.
 
Subscribe
Share It
RSSrss
See all blog subscribe options
Google google
What is RSS?
Yahoo! yahoo
Addthis Subscribe using any feed reader!
Bloglines Bloglines
Newsletter

TwitterFollow us on Twitter!