Check Point Reference: | CPAI-2013-3487 |
Date Published: | 27 Oct 2013 |
Severity: | Critical |
Last Updated: | Saturday 04 January, 2025 |
Source: | |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | Adobe Reader 9.3 and earlier versions Adobe Acrobat 9.3 and earlier versions Adobe Reader 8.2 and earlier versions Adobe Acrobat 8.2 and earlier versions |
Vulnerability Description | Blackhole is a web exploit kit that operates by delivering malicious payload to the victim's computer. |
Vulnerability Details | Remote attackers can infect users with Blackhole by enticing them to visit a malicious web page. Successful infection will allow the attacker to download additional malware to the target. |
This protection will detect and block Blackhole infection attempts at the Adobe Reader payload stage.
In order for the protection to be activated, update your product to the latest update. For information on how to update , go to SBP-2006-05, Protection tab and select the version of your choice.
SmartView Tracker will log the following entries:
Attack Name: Web Client Enforcement Violation
Attack Information: BlackHole Toolkit v2 Adobe Reader Payload Stage Code Execution