Adobe Issues Emergency Update to Flash After Ransomware Attacks The software maker urged the more than 1 billion users of Flash on Windows, Mac, Chrome and Linux computers to update the product as quickly as possible.

By Reuters

This story originally appeared on Reuters

Reuters | Leonhard Foeger

Adobe Systems Inc. issued an emergency update on Thursday to its widely used Flash software for Internet browsers after researchers discovered a security flaw that was being exploited to deliver ransomware to Windows PCs.

The software maker urged the more than 1 billion users of Flash on Windows, Mac, Chrome and Linux computers to update the product as quickly as possible after security researchers said the bug was being exploited in "drive-by" attacks that infect computers with ransomware when tainted websites are visited.

Ransomware encrypts data, locking up computers, then demands payments that often range from $200 to $600 to unlock each infected PC.

Japanese security software maker Trend Micro Inc. said that it had warned Adobe that it had seen attackers exploiting the flaw to infect computers with a type of ransomware known as 'Cerber' as early as March 31.

Cerber "has a 'voice' tactic that reads aloud the ransom note to create a sense of urgency and stir users to pay," Trend Micro said on its blog.

Adobe's new patch fixes a previously unknown security flaw. Such bugs, known as "zero days," are highly prized because they are harder to defend against since software makers and security firms have not had time to figure out ways to block them. They are typically used by nation states for espionage and sabotage, not by cyber criminals who tend to use widely known bugs for their attacks.

Use of a "zero day" to distribute ransomware highlights the severity of a growing ransomware epidemic, which has disrupted operations at a wide range of organizations across the United States and Europe, including hospitals, police stations and school districts.

Ransomware schemes have boomed in recent months, with increasingly sophisticated techniques and tools used in such operations.

"The deployment of a zero day highlights potential advancement by cyber criminals," said Kyrk Storer, a spokesman for FireEye Inc. "We have observed ransomware and crimeware deployed via 'zero-day' before; however, it is rare."

FireEye said that the bug was being leveraged to deliver ransomware in what is known as the Magnitude Exploit Kit. This is an automated tool sold on underground forums that hackers use to infect PCs with viruses through tainted websites.

Exploit kits are used for "drive-by" attacks that automatically seek to attack the computers of people who view an infected website.

(Reporting by Jim Finkle; Editing by Bernadette Baum and Kenneth Maxwell)

Want to be an Entrepreneur Leadership Network contributor? Apply now to join.

Business News

Citigroup Mistakenly Credited a Customer with $81 Trillion Instead of $280: 'Inputting Error'

An employee caught the mistake quickly, but the bank has recently made other errors that have drawn scrutiny and fines from regulators.

Business Ideas

70 Small Business Ideas to Start in 2025

We put together a list of the best, most profitable small business ideas for entrepreneurs to pursue in 2025.

Money & Finance

The 'Treat Yo Self' Budget — How to Splurge Responsibly Without the Guilt Trip

Explore the balance between saving and indulging with our guide. Learn how to enjoy life's little luxuries, plan for treats in your budget and make smart spending decisions without derailing your financial goals.

Science & Technology

The "Lazy" Entrepreneur's Guide to AI: 5 Tools to Run Your Business on Autopilot

Want to run your business on autopilot and escape the 24/7 grind? AI is the "lazy" entrepreneur's secret weapon! In this video, discover five game-changing AI tools to automate work, save time and boost profits.

Money & Finance

BOI Reporting Requirements Changed Yet Again — Do You Need to File By the New March Deadline? Find Out Here.

The BOI filing requirement has changed for yet another time. Here's a detailed perspective and history on BOI along with a timely guide for business owners who want to ensure they comply on time and save themselves hundreds of dollars in daily fines.

Side Hustle

I've Made Hundreds of Thousands of Dollars With a Fun Side Hustle — And You Might Have Seen Me Doing It on TV

Phil Schraeder, CEO at GumGum Advertising, turned a childhood passion into a lucrative side gig.