mailing list archives
Re: Setting triple/quad PDF exploit system
From: Atul Agarwal <atul () secfence com>
Date: Mon, 28 Jun 2010 21:51:49 +0530
As far as I know, there is no way through which you can achieve that in
As per my understanding of your post, you want an generate a single pdf that
will exploit multiple vulns. But, AFAIK, its not possible to move on to the
next exploit if one fails.
All the malicious pdf's I've come across incorporate multiple exploits by
checking the reader application's version. The shellcode/payload can be the
same, but the exploit is triggered after checking the version.
var version = app.viewerVersion;
//do something else..
.. and so on
Hope that helped.
BTW, If someone can share a technique to trigger the next exploit by
checking if the current one failed, I'll appreciate that.
On Mon, Jun 28, 2010 at 8:43 PM, Spring Systems <korund () hotmail com> wrote:
Is it possible to join few adobe exploits, say 3-4 ones, into one PDF
file, to make triple (or quad) exploit system? All exploits dedicated to
launch one payload (which is compatible with all these PDF exploits). Is it
possible and how to achieve this in Metasploit? I know there is triple PDF
sploits in the wild, if one exploit fails, then another exploit start, if it
also fails, the next instance will run (loop).
Hotmail has tools for the New Busy. Search, chat and e-mail from your