Trend Micro: Yesterday's Adobe Flash Player contains actively exploited zero-day leak

Yesterday's update for the Adobe Flash Player contains a zero-day leak that is actively attacked and for which no patch is available yet, according to Japanese antivirus company Trend Micro. Several Ministries of Foreign Affairs have been attacked using the leak.

myce-adobe-flash

Victims of the leak receive a phishing email that contains a link to a website. This website then loads an exploit that abuses the Flash Player leak to install malware on the computer. The phishing mails have subjects such as "Suicide car bomb targets NATO troop convoy Kabul", "Syrian troops make gains as Putin defends airstrikes", "Israel launches airstrikes on targets in Gaza", "Russia warns of response to reported US nuke buildup in Turkey, Europe" and "US military reports 75 US-trained rebels return Syria".

According to Trend Micro the group behind the attack is also responsible for an attack where a zero-day leak in Java was abused. The group allegedly also attacked NATO, the White House, the German parliament and other Ministries of Foreign Affairs.

The report of the antivirus company follows yesterday's Adobe Patch Tuesday which patched 13 vulnerabilities in Flash Player. Nevertheless, the most recent Flash Player with version number 19.0.0.207 is vulnerable to the most recent attack. Adobe is warned about the new leak but hasn't posted a warning.

No posts to display