Security Basics mailing list archives

RE: Is it time to consider PDF a threat?


From: "Murda Mcloud" <murdamcloud () bigpond com>
Date: Tue, 19 Feb 2008 08:44:16 +1000

I thought they'd been considered a threat for a while now, anyway. I know
I've warned our users over the ability to use pdf's to run exploits against.

There was a spate of spam last year with dodgy pdf attachments-I can't
remember the exact vulnerability it was targeting though.

And would people trust an MS standard any more than an Adobe one? The vast
majority of people, I believe, will keep using it because of its portability
and its ubiquity.




-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On
Behalf Of Arman
Sent: Sunday, February 17, 2008 5:59 AM
To: security-basics () securityfocus com
Subject: Is it time to consider PDF a threat?


the thread :  
http://arstechnica.com/news.ars/post/20080212-is-it-time-to-consider-pdf-a-t
hreat.html

-- 
Muhammad Arman Bin Selamat
System Administrator
IT Department
CyberSecurity Malaysia (formerly known as NISER)
An Agency Under MOSTI
DL      :  +603 8992 6965
Fax     :  +603 8945 3205
HP      :  +6019 610 1956
http://www.cybersecurity.org.my


E-mail Disclaimer 

Please be informed that NISER is now known as CyberSecurity Malaysia.  As 
such, our e-mail is now changed to [user () cybersecurity org my]. Please use 
the new CyberSecurity Malaysia e-mail for all correspondence.

Disclaimer:  This e-mail and any files attached to it are intended solely
for 
the recipient(s) and may contain privileged and/or confidential information.

If you are not the intended recipient or if you have inadvertently received 
this e-mail, you should destroy or delete it and notify the sender by return

e-mail.  You are not to reproduce and/or distribute it without prior consent

from the sender.  Opinions, conclusions and other information in this e-mail

that do not relate to the official business of CyberSecurity Malaysia shall 
be understood as neither given nor endorsed by CyberSecurity Malaysia.  
CyberSecurity Malaysia accepts no liability for the content of this e-mail, 
or of the consequences of any actions taken on the basis of the information 
provided.


Current thread: