FYI...
Exploit for Flash vuln targets users in Japan for financial info
- http://www.symantec....ial-information
Updated: 30 May 2014 - "... research now indicates that the attacks are being performed on a massive scale and that majority of them are focused on Japan. Back in April, CVE-2014-0515 was originally being exploited in watering-hole attacks against specific organizations or industries. Later in the same month, Adobe released a patch* for the vulnerability. However, just a few weeks later Symantec telemetry indicated that instead of the initial targets, the exploit was now being used to target a wider range of Internet users.
> http://www.symantec..../Figure1_12.png
... more than 90 percent of the attacks exploiting the vulnerability are targeting Japanese users. The attacks are typically carried out through drive-by-download and leverage compromised legitimate websites to host malicious code. The websites then redirect traffic to a malicious site prepared by the attacker... Once the browsers are redirected to the malicious site, which has the IP address 1.234.35.42**, they render the exploit code that attempts to exploit CVE-2014-0515. If an older version of the software is installed on the computer, the attack will execute a series of malicious files to compromise the computer...
Cumulative number of attacks on Japanese users:
> http://www.symantec....1/Figure3_6.png
Infostealer.Bankeiya.B monitors the Web browsers Google Chrome, Mozilla Firefox and Microsoft Internet Explorer. The Trojan gathers specific user data typically found in online banking transactions. The malware can also update itself, enabling it to target more banks and add more capabilities in order to perform additional malicious actions..."
* https://helpx.adobe..../apsb14-13.html
* https://web.nvd.nist...d=CVE-2014-0515 - 10.0 (HIGH)
"... as exploited in the wild in April 2014..."
> Most recent version:
- https://helpx.adobe..../apsb14-16.html
June 10, 2014 - "... Flash Player 14.0.0.125..."
Available here: https://www.adobe.co...tribution3.html
>> https://www.adobe.co...re/flash/about/
** 1.234.35.42: https://www.virustot...42/information/
Last: 2014-06-25
- http://www.reuters.c...N0EB02M20140531
May 30, 2014 10:02pm EDT
- http://blog.trendmic...its-japan-hard/
June 2, 2014
Edited by AplusWebMaster, 26 June 2014 - 07:01 AM.