|06 Mar 2013||#1|
| || |
Blackhole outfitted with exploit for recently patched Java flaw
The exploit for the recently patched CVE-2013-0431 Java vulnerability has been added to the Blackhole exploit kit, Trend Micro researchers report.
The fact was discovered through the analysis of the latest PayPal-themed spam run that leads to a page hosting the exploit kit.
Users are presented with a "Receipt for your PayPal payment to…" email, and are urged to verify the details of the payment order by clicking on a link included in the message.
|My System Specs|
|Similar help and support threads for2: Blackhole outfitted with exploit for recently patched Java flaw|
|Recently patched Java flaw already targeted in mass attacks||Security News|
|Yet another Java exploit thread.||System Security|
|Chrome Playing Hard to Get with Blackhole Exploit Kit||Security News|
|New Drive-By Download Attack Exploits Recently Patched IE Flaw||Security News|
|Malicious RTF Files Exploit Office Flaw to Install Trojan||Security News|
|Exploit Code Available for Shockwave Player Zero-Day Flaw||Security News|
|Exploit:Java/CVE-2008-5353.B;Trojan:Java/Selace.A and B||System Security|