Welcome to Littlefish IT Support

My name is James. How can I help you today?

Adobe Flash Security Model Allows Malware

Adobe Flash Security Model Allows Malware

Adobe Flash Security Model Allows Malware

An IT security researcher at Foreground Security has identified a flaw in the way internet browsers handle Adobe Flash files that could be used to compromise Web sites that allow users to submit content.


"The short version of all this, of course, is that if I can convince a server to serve up a file on my behalf, I can use that file to attack the server," said IT company researcher Mike Bailey.

Bailey has posted screen shots demonstrating the vulnerability by uploading and executing Flash (SWF) files using cPanel's File Manager and the Squirrelmail Web e-mail client. In a video posted on YouTube, he demonstrates how he used the vulnerability to attack Gmail and also that IT Support is a must.