NEWS /

Sophos Urges Adobe to Disable JavaScript

02 Jul, 2010, 10:48 am IST | by Press Release |

IT security and data protection firm, Sophos, has urged software provider Adobe to begin disabling JavaScript in its products by default. This comes following the most recent security update for Adobe Acrobat and Reader which fixed a serious vulnerability that relies on JavaScript code.

The vulnerability – named CVE-2010-1297 – involved a booby-trapped PDF file which would contain a Flash animation and relied on JavaScript for the exploit to work. The exploit is more complex than previous Adobe exploits, potentially marking a new trend in the development of Adobe exploits.

“The common thread in most, if not all, Adobe exploits is the requirement for JavaScript , as exploits will work correctly only if JavaScript is enabled,” said Vanja Svajcer Principal Virus Researcher at Sophos. “This is why we recommend all users disable JavaScript in Adobe Acrobat and Reader.”

“The company’s regular security updates show that Adobe is now doing more to address vulnerabilities, but the high number of patched vulnerabilities indicate that it may be a good time for Adobe to overhaul its approach to building security into its products,” continued Svajcer. “If nothing else, JavaScript should be disabled by default in Adobe Reader.”

Sophos recommends that all users disable JavaScript in Adobe Acrobat and Reader by default, more details of how to do this can be found on the SophosLabs Blog here: http://www.sophos.com/blogs/sophoslabs/v/post/3267

Tags: Sophos , Adobe , Javascript

RELATED STORIES

Angry Birds Space for Android may contain malware

Angry Birds Space for Android may contain malware

Angry Birds Space is quite the hit, it reached 10 million downloads in the first three days alone. Users may ...

Security firms intrigued by Apple's Gatekeeper

Facebook Timeline concerns 51 percent of users

Virus infections stop as Facebook names suspects

60,000 Facebook account logins compromised everyday

Online scammers seek to profit from the death of Steve Jobs

Spelling mistakes can lead to online security breaches

 

Leaked Images, Availability, Pricing,
Specs, Pre-order

Photos

High Court Order - Madras

High Court Order - Madras

17 May, 2012, 04:22 PM

2.3

Trials Evolution

Trials Evolution

12 May, 2012, 10:33 AM

Sniper Elite V2

Sniper Elite V2

09 May, 2012, 10:04 PM

3.6

MORE PHOTOS

OPINIONS

Padmini Harchandrai

The latest "should they-shouldn't they" event with Facebook is the lift of the minimu...

MORE OPINIONS

features

Portable Wi-Fi Drives for your smartphone

Portable Wi-Fi Drives for your smartphone

Fed up of the limited storage on your mobile device? Here are some devices

By Aaron Almeida

Top 5 potential Gmail alternatives

Top 5 potential Gmail alternatives

Google’s Gmail service is arguably the most advanced and feature-packed...

By Naina Khedekar

Five ways to beat the petrol hike

Five ways to beat the petrol hike

Petrol prices went up by a considerable amount post Wednesday, and this...

By Karan Shah

MORE FEATURES

On video: HTC One V

On video: HTC One V

18 May, 2012, 04:44 AM

4.4

On video: Cowon Z2 (16GB)

On video: Cowon Z2 (16GB)

15 May, 2012, 04:58 PM

2.3

On video: Samsung WB150F

On video: Samsung WB150F

08 May, 2012, 04:23 AM

5.0

MORE VIDEOS

776 views

1130 views

630 views

MORE WALLPAPERS