Windows News and info 15th Anniversary 2009-2024

Windows 11 | Windows 10 Modifying => Patch Tuesday| Updates | Security | Privacy | Anti-virus => Topic started by: javajolt on July 04, 2018, 04:18:05 PM

Title: Microsoft recently neutralized a double zero-day exploit
Post by: javajolt on July 04, 2018, 04:18:05 PM
(http://s22.postimg.cc/r222iyqgx/Microsoft-_Security-_Risk-_Detection.jpg)
On Monday, Microsoft provided details on how they collaborated with ESET and Adobe security researchers to find and neutralize a double zero-day exploit before an attacker had a chance to use it. This particular exploit affected both Adobe products (Acrobat and Reader) and Microsoft products (Windows 7 and Windows Server 2008).

Quote
The first exploit attacks the Adobe JavaScript engine to run shellcode in the context of that module. The second exploit, which does not affect modern platforms like Windows 10, allows the shellcode to escape Adobe Reader sandbox and run with elevated privileges from Windows kernel memory.

Microsoft and Adobe have already released security updates for these exploits, you can learn more about them from the links below.

► CVE-2018-4990 | Security updates available for Adobe Acrobat and Reader | APSB18-09 (http://helpx.adobe.com/security/products/acrobat/apsb18-09.html)

► CVE-2018-8120 | Win32k Elevation of Privilege Vulnerability (http://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2018-8120)

If you are interested in learning more about the exploit process, follow this link (http://cloudblogs.microsoft.com/microsoftsecure/2018/07/02/taking-apart-a-double-zero-day-sample-discovered-in-joint-hunt-with-eset/).

source (http://mspoweruser.com/microsoft-recently-neutralized-a-double-zero-day-exploit/)