On BNET: Give your browser a panic button
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 5 of 24:
Next »
« Previous
Not really....this is not so much about browsers
Recent reports have shown that the automatic update feature of FF allows fixes to be applied quickly to a large percentage of FF users, making any attempt to utilize any of the bugs you highlighted a complete waste of time. These bugs are already fixed for the vast majority of persons using FF, and almost everyone will be using the latest version, 3.0.10.

In any case, this attack is actually targeting the Adobe Reader and the Flash player plug-in that IE users are using (an active X plug-in), not browser vulnerabilities present in IE. When the victim visits an infected site, they get redirected to the Gumblar website which then pushes an infected pdf unto the PC as well as attempts to use a flash exploit. Once on the PC, the malware disables things like regedit, antivirus software and cmd, looks for ftp client passwords, and redirects your Google searches to sites that usually also push malware. It's unclear to me if the latest version of Adobe Reader is vulnerable - i'm seeing conflicting reports online. Turning off Javascript in Adobe Reader until the problem is solved is probably wise. Updating flash to the latest version 10 is also necessary. FF users can further protect their PCs with NoScript.
Posted by: eMJayy   Posted on: 05/19/09 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

RE: 'Gumblar' web attacks spreading quickly  Serenicom | 05/19/09
Not another My browser is better than yours post...  cneale@... | 05/19/09
grin  LiLac22281 | 05/21/09
Read it and weep...there are plenty of browser holes to go around.  IT_Guy_z | 05/19/09
Not really....this is not so much about browsers  eMJayy | 05/19/09
Secunia PSI ...  JCitizen | 05/20/09
Why weep...  Wintel BSOD | 05/20/09
Read again!  Parassassin | 05/20/09
FireFox  Average-IT-Guy | 05/20/09
Unless you need web functinality..  JCitizen | 05/20/09
Why I use Firefox  Serenicom | 05/24/09
Last time I attempted to use Foxit..  JCitizen | 05/25/09
Adobe update.  magallanes | 05/20/09
You still need AV and AS solutions as well..  JCitizen | 05/25/09
RE: Add ons aren't the solution  jgwinner | 05/20/09
Pouring over reviews...  JCitizen | 05/25/09
RE: 'Gumblar' web attacks spreading quickly  rzazueta | 05/20/09
Hidden Dummy, Crouching Tard  mobyprick@... | 05/21/09
RE: 'Gumblar' web attacks spreading quickly - on Windows  barence773 | 05/21/09
Just keep it well patched...  JCitizen | 05/25/09
RE: 'Gumblar' web attacks spreading quickly  morwen | 05/21/09
'Gumblar' web attacks spreading quickly  interested_amateur@... | 05/21/09
Hmmm!..  JCitizen | 05/25/09
RE: 'Gumblar' web attacks spreading quickly  Serenicom | 05/27/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

Meet Doc

  • Here to help you with your Document Management Needs
  • Doc is an enigma. Born to a Russian ballerina and a German electrical engineer, he grew up in various locations in the United States. He’s seen the insides of more brands, versions, and generations of printer and printer-related hardware than almost anyone.
  • To learn more about this mysterious figure check out his blog on ZDNet. You’ll be glad you did.
  • Produced by
    ZDNet and