Yahoo Users Hacked Through Unpatched Flash Vulnerabilities

Latest Videos FromTom's Hardware
Contributor

Lucian Armasu is a Contributing Writer for Tom's Hardware US. He covers software news and the issues surrounding privacy and security.

  • junkeymonkey
    I don't know how much it helps me ,but flash is one of the first things I remove / uninstall/ deleat from my os's . now a days html5 seems to have me covered , and if not I guess I did not need to see it anyway...

    of course if they hack html5 now I see that can be a big issue
    Reply
  • thundervore
    And yet another reason to use ad blocking software :)
    Reply
  • junkeymonkey
    ya , but flash is used in more then just ad's . remove flash and problem solved all around
    Reply
  • ralanahm
    I am not sure what is meant by "(assuming the user is on a Standard account and not an Administrator one" I thought standard was safer. Is this a special malware or was the wording reversed?
    Reply
  • dotaloc
    I am not sure what is meant by "(assuming the user is on a Standard account and not an Administrator one" I thought standard was safer. Is this a special malware or was the wording reversed?

    Read the whole paragraph. The logic is correct, but I had to read it a couple of times...so it probably could have been written more clearly.
    Reply
  • targetdrone
    When is Google and Mozilla going to kill flash once and for all?
    Just publish an end of support date. After that day Flash will no longer work in Chrome or Firefox.

    It's not like people are going to go back to IE.
    Reply
  • 2Be_or_Not2Be
    Hey, where is that contributing writer who said "ad block is stealing"???? Surely he should be spin some kind of statement on how the malware that came from Yahoo's ad network is actually a good thing and surely isn't a reason to install an ad-blocker.

    http://www.tomsguide.com/us/ad-blocking-is-stealing,news-20962.html

    Reply
  • virtualban
    How malvertising manages to get through?
    Aren't 'they' trying to put https by default everywhere, so every one on the web is identified with a real person outside, and advertisers have a way to get infected but no consequences to any real person for the vulnerabilities or intentionalities?
    Reply