Symantec Security Response Weblog: Neosploit Updated to Include an Acrobat Exploit

AdobeReaderのExploitに対応したNeoSploitのアップデートが出ているそうです。

On about April 18th, Symantec's DeepSight honeypots began capturing a new iteration of the Neosploit exploit toolkit. It appears that the pervasive exploit kit has been updated to take advantage of a circa February 2008 vulnerability in Adobe Acrobat Professional and Reader. What makes this attack vector of particular concern is that it will work reasonably silently through most browsers.

screenshot