• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Flash Vulnerabilities Affect Thousands of Sites

malware

New Member
Joined
Nov 7, 2004
Messages
5,422 (0.74/day)
Location
Bulgaria
Processor Intel Core 2 Quad Q6600 G0 VID: 1.2125
Motherboard GIGABYTE GA-P35-DS3P rev.2.0
Cooling Thermalright Ultra-120 eXtreme + Noctua NF-S12 Fan
Memory 4x1 GB PQI DDR2 PC2-6400
Video Card(s) Colorful iGame Radeon HD 4890 1 GB GDDR5
Storage 2x 500 GB Seagate Barracuda 7200.11 32 MB RAID0
Display(s) BenQ G2400W 24-inch WideScreen LCD
Case Cooler Master COSMOS RC-1000 (sold), Cooler Master HAF-932 (delivered)
Audio Device(s) Creative X-Fi XtremeMusic + Logitech Z-5500 Digital THX
Power Supply Chieftec CFT-1000G-DF 1kW
Software Laptop: Lenovo 3000 N200 C2DT2310/3GB/120GB/GF7300/15.4"/Razer
Researchers from Google have documented serious vulnerabilities in Adobe Flash content which leave tens of thousands of websites susceptible to attacks that steal the personal details of visitors. The security bugs reside in Flash applets, the ubiquitous building blocks for movies and graphics that animate sites across the web. Also known as SWF files, they are vulnerable to attacks in which malicious strings are injected into the legitimate code through a technique known as cross-site scripting, or XSS. Currently there are no patches for the vulnerabilities, which are found in sites operated by financial institutions, government agencies and other organizations. "Lots of people are vulnerable, and right now there are no protections available other than to remove those SWFs and wait for the authoring tools and/or Flash player to be updated," says Alex Stamos, an author of the Hacking Exposed Web 2.0 book. "In the mean time, people will have to think: 'What kind of flash am I using on my site,' and manually test for vulnerabilities."

View at TechPowerUp Main Site
 

btarunr

Editor & Senior Moderator
Staff member
Joined
Oct 9, 2007
Messages
47,294 (7.53/day)
Location
Hyderabad, India
System Name RBMK-1000
Processor AMD Ryzen 7 5700G
Motherboard ASUS ROG Strix B450-E Gaming
Cooling DeepCool Gammax L240 V2
Memory 2x 8GB G.Skill Sniper X
Video Card(s) Palit GeForce RTX 2080 SUPER GameRock
Storage Western Digital Black NVMe 512GB
Display(s) BenQ 1440p 60 Hz 27-inch
Case Corsair Carbide 100R
Audio Device(s) ASUS SupremeFX S1220A
Power Supply Cooler Master MWE Gold 650W
Mouse ASUS ROG Strix Impact
Keyboard Gamdias Hermes E2
Software Windows 11 Pro
I feel Silverlight isn't getting the attention it deserves as an alternative with better capabilities. There should always be two competing forces in an industry. It would foster innovation....which inturn would make sure software with lesser vulnerabilities come out and companies would give it their everything to making the software.
 
Joined
Oct 19, 2006
Messages
360 (0.05/day)
Location
Adelaide, SA, Aussie!
System Name Blaq Mamba
Processor Intel i7 950 @4Ghz Swiftech Water Cooled
Motherboard ASUS ROG Rampage III Formula
Cooling All are 12cm LED fans: 2x front, 1x side, 1x back, 2x inside top under CPU radiator, 2x 14cm Top.
Memory 12GB DDR3 1600 3x4GB DIMMs
Video Card(s) 2x MSI HD 6950 2GB flashed to 6970 2GB... Damn fast :p direct exhaust.
Storage 2x GSkill Phoenix Pro 120GB SSDs' in RAID 0 (500MB/s read/write). 3x 2TB WD Green in RAID 5
Display(s) 52" Sony Bravia LCD 200hz motionflow
Case NZXT Tempest Evo
Audio Device(s) 6950/6970
Power Supply 1200w Thermaltake Toughpower
Software Windows 7 Ultimate x64
Benchmark Scores 7.7 in Windows Experience Index.... CPU holding me back...
im not 2 sure whether this is very much of a consumer concern......

but if it is, i'd recommend Flashblock for Firefox Users.

Works a treat.
 
Joined
Oct 1, 2006
Messages
652 (0.10/day)
Location
Germany
Processor AMD Phenom II X2 550 @3600MHz (VCore -0.05V)
Motherboard Gigabyte MA-780G-DS3H (AMD SB700), BIOS: 04/14/09
Cooling Scythe Samurai cooled by 2x Enermax Warp 80mm ~700 RPM
Memory 2x 1GB GeIL Ultra DDR2-800 @1066 CL4-5-5-15 2T
Video Card(s) MSI R4830 OC (HD4830)
Storage Samsung 400 GB S-ATA, WD 400GB S-ATA
Display(s) Samsung 2433BW 1920 x 1200 Pixel (16:10)
Case timeless office tower ;)
Audio Device(s) Asus Xonar D1
Power Supply be quiet! Straight Power BQT E7-400W
Software Windows XP Pro 32bit
http://noscript.net/



https://addons.mozilla.org/en-US/firefox/addon/722

 
Joined
May 19, 2007
Messages
7,662 (1.19/day)
Location
c:\programs\kitteh.exe
Processor C2Q6600 @ 1.6 GHz
Motherboard Anus PQ5
Cooling ACFPro
Memory GEiL2 x 1 GB PC2 6400
Video Card(s) MSi 4830 (RIP)
Storage Seagate Barracuda 7200.10 320 GB Perpendicular Recording
Display(s) Dell 17'
Case El Cheepo
Audio Device(s) 7.1 Onboard
Power Supply Corsair TX750
Software MCE2K5
I feel Silverlight isn't getting the attention it deserves as an alternative with better capabilities. There should always be two competing forces in an industry. It would foster innovation....which inturn would make sure software with lesser vulnerabilities come out and companies would give it their everything to making the software.

one standard is enough thank you.
 
Joined
Dec 9, 2007
Messages
746 (0.12/day)
Any competent web developer shouldn't have to code in flash to pepper their website with crap. (X)HTML/CSS and/or JavaScript with png's/gif's are more than enough.
 
Top