The hacking of the Hacking Team, a spyware company based in Italy, has exposed the security vulnerabilities in Microsoft Corporation (NASDAQ:MSFT) Windows and Adobe Systems Incorporated (NASDAQ:ADBE) Flash. The hacking has exposed 400 GB of data from Hacking Team online.
The leaked source code online has exposed the security vulnerabilities in the Adobe Flash Player that has been undetected for years together. The Italian Hacking Team has cleverly exploiting the vulnerabilities in the Adobe Flash through developing malicious code and inflicting the users’ computers.
The Hacking Team has not reported these vulnerabilities and cashing in on the security vulnerabilities. The most beautiful flash bug as the hackers termed is being exploited on machines that run the OS like Linux, Windows and OS X.
The hacker can execute the code through Internet browsers like Mozilla Foundation Firefox, Apple Inc. (NASDAQ:AAPL)’s Safari, Google Inc (NASDAQ:GOOGL) Chrome, and Microsoft Internet Explorer on the victim machine.
The security vulnerability in the ATMFD.dll of Adobe is exploited by the Hacking Team through creating a nefarious software code. An under buffer flow is created when the ATMFD.dll processes data due to an extension of the signed number.
The hacker creates a font’s buffer and sends the content and commands to the front side of the input buffer. It ultimately gives complete control over the user system and gain access to the sensitive information.
It is just an iceberg of the tricks and tools used by the Hacking Team. It has sold the malicious code to the governments like Singapore, UAE and Sudan. The security vulnerability is still present in the latest versions of Adobe.
In another incidence, the attacker opens calc.exe and allows download of the malicious file onto the victims’ computer and executes the code.
Adobe has responded to the news and is working seriously to release fix by the end of this week.
Another security flaw is noticed in Windows. The security patch is not available for the windows. It affects the windows starting from XP to 8.1.
It is time for the users to update the antivirus on their machines since the exposed code will be part of the cyber criminals’ suite to take advantage of the sensitive information.
This report is for information purposes only, and is neither a solicitation or recommendation to buy nor an offer to sell securities. Financials Trend is not-a-registered-investment-advisor. Financials Trend is not a broker-dealer. Information, opinions and analysis contained herein are based on sources believed to be reliable, but no representation, expressed or implied, is made as to its accuracy, completeness or correctness. The opinions contained herein reflect our current judgment and are subject to change without notice. Financials Trend accepts no liability for any losses arising from an investor's reliance on the use of this material. Financials Trend sometimes gets compensated up to one hundred and fifty thousand dollars per month for featuring particular stocks. See site disclaimer for complete compensation. Financials Trend and its affiliates or officers currently hold no shares of these stocks. Financials Trend and its affiliates or officers will purchase and sell shares of common stock of these stocks, in the open market at any time without notice. Financials Trend will not update its purchases and sales of these stocks in any future postings on Financials Trend's websites. Certain information included herein is forward-looking within the context of the Private Securities Litigation Reform Act of 1995, including, but not limited to, statements concerning manufacturing, marketing, growth, and expansion. The words "may", "would," "will," "expect," "estimate," "anticipate," "believe," "intend," " project," and similar expressions and variations thereof are intended to identify for ward-looking statements. Such forward- looking information involves important risks and uncertainties that could affect actual results and cause them to differ materially from expectations expressed herein. *Financials Trend does not set price targets on securities. Never invest into a stock discussed on this web site or in this email alert unless you can afford to lose your entire investment.