Security News

Old-school cruel: Dodgy PDF email attachments enjoying a renaissance
2019-04-19 07:06

Let's go back... way back The last few months have seen a big increase in malware attacks using PDF email attachments, according to security firm SonicWall.…

Flaw in popular PDF creation library enabled remote code execution
2019-03-21 12:02

A researcher has discovered a high-severity bug in a popular PHP library used for creating PDFs.

Digital Signatures in PDFs Are Broken
2019-03-06 12:17

Researchers have demonstrated spoofing of digital signatures in PDF files. This would matter more if PDF digital signatures were widely used. Still, the researchers have worked with the various...

Data-tracking Chrome flaw triggered by viewing PDFs
2019-03-01 12:33

Researchers have spotted an unusual ‘trackware’ attack triggered by a viewing a PDF inside the Chrome browser.

Chrome Zero-Day Exploited to Harvest User Data via PDF Files
2019-02-27 15:37

Exploit detection service EdgeSpot says it has spotted several PDF documents that exploit a zero-day vulnerability in Chrome to collect information on users who open the files through Google’s web...

Researchers break e-signatures in 22 common PDF viewers
2019-02-27 12:01

Researchers have discovered a flaw in some PDF document viewers that allows new content to be added to documents without breaking the electronic signatures.

New Attacks Show Signed PDF Documents Cannot Be Trusted
2019-02-26 18:48

Many popular PDF viewers and online validation services contain vulnerabilities that can be exploited to make unauthorized changes to signed PDF documents without invalidating their signature,...

PDF viewers, online validation services vulnerable to digital signature spoofing attacks
2019-02-26 14:46

Academics from Ruhr University Bochum have proven that the majority of popular PDF viewer apps and online digital signature validation services can be tricked into validating invalid signatures or...

WTF PDF: If at first you don't succeed, you may be Adobe re-patching its Acrobat, Reader patches
2019-02-21 21:51

Plus: How Microsoft Edge helps Facebook Flash files dodge click-to-play rules in Edge Adobe is taking a second crack at patching security bugs in its Acrobat and Reader PDF apps.…

World's favourite open-source PDF interpreter needs patching (again)
2019-01-24 13:32

Still afraid of no ghost? You didn't read the script Google Project Zero bug-hunter Tavis Ormandy took a "random look at the new release" of Ghostscript, and turned up a vulnerability that works...