Page 1 of 3 123 LastLast
Results 1 to 20 of 45

Thread: Everyone reading this should disable Adobe Flash. As in right fucking now.

  1. #1
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961

    Everyone reading this should disable Adobe Flash. As in right fucking now.

    A few days ago, a company called Hacking Team got hacked and 400+ gigs of data were exfiltrated from their servers and posted online.

    (Funny.)

    Their client lists, all their billing data, everything was in the dump. And said client list was a whose who of despotic regimes around the world.

    To quote Bruce Schneier;

    "It's one thing to have dissatisfied customers. It's another to have dissatisfied customers with death squads. I don't think the company is going to survive this."

    (Sides.)

    Anyway I'll cut to the chase:

    Among the gems uncovered in the 400+ gigs of data that got dumped, is not one but TWO currently unpatched Flash zero day exploits. Both of which are being used in the wild, right now, to compromise Windows, OSX, and Linux hosts.

    (Sides in orbit).

    So yeah just disable that shit until Adobe patches.

     
    Comments
      
      Benford: Thank you
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  2. #2
    Gold anonamoose's Avatar
    Reputation
    127
    Join Date
    May 2012
    Posts
    2,038
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    A few days ago, a company called Hacking Team got hacked and 400+ gigs of data were exfiltrated from their servers and posted online.

    (Funny.)

    Their client lists, all their billing data, everything was in the dump. And said client list was a whose who of despotic regimes around the world.

    To quote Bruce Schneier;

    "It's one thing to have dissatisfied customers. It's another to have dissatisfied customers with death squads. I don't think the company is going to survive this."

    (Sides.)

    Anyway I'll cut to the chase:

    Among the gems uncovered in the 400+ gigs of data that got dumped, is not one but TWO currently unpatched Flash zero day exploits. Both of which are being used in the wild, right now, to compromise Windows, OSX, and Linux hosts.

    (Sides in orbit).

    So yeah just disable that shit until Adobe patches.
    Thanks but no thanks.

  3. #3
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    Quote Originally Posted by anonamoose View Post

    Thanks but no thanks.
    I hope this is one of those 'wow sorry I was drunk when I posted that' posts.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  4. #4
    Gold anonamoose's Avatar
    Reputation
    127
    Join Date
    May 2012
    Posts
    2,038
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    Quote Originally Posted by anonamoose View Post

    Thanks but no thanks.
    I hope this is one of those 'wow sorry I was drunk when I posted that' posts.
    Negative.

    I'd rather just uninstall windows than uninstall flash.

  5. #5
    Banned
    Reputation
    1688
    Join Date
    Mar 2012
    Location
    Mar-a-Lago
    Posts
    8,620
    Load Metric
    67438961
    Quote Originally Posted by anonamoose View Post
    Quote Originally Posted by sonatine View Post

    I hope this is one of those 'wow sorry I was drunk when I posted that' posts.
    Negative.

    I'd rather just uninstall windows than uninstall flash.



  6. #6
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    Given that the same dump contained currently undetectable RATs, your instincts are correct.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  7. #7
    Gold anonamoose's Avatar
    Reputation
    127
    Join Date
    May 2012
    Posts
    2,038
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    Given that the same dump contained currently undetectable RATs, your instincts are correct.
    It'll be patched soon and in all likelihood no one that uses flash is going to get it unless you're browsing porn or clicking on shit you shouldn't be to begin with. What is the likelihood I go on youtube or twitch and get this? Probably about 0.000000001%

    I'll take those odds over uninstalling something that 90% of the websites I go to uses.

     
    Comments
      
      LegalizeMeth: cause noones browsing porn here

  8. #8
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    Quote Originally Posted by anonamoose View Post
    Quote Originally Posted by sonatine View Post
    Given that the same dump contained currently undetectable RATs, your instincts are correct.
    It'll be patched soon and in all likelihood no one that uses flash is going to get it unless you're browsing porn or clicking on shit you shouldn't be to begin with. What is the likelihood I go on youtube or twitch and get this? Probably about 0.000000001%

    I'll take those odds over uninstalling something that 90% of the websites I go to uses.

    Brb paying $200 to get a flash banner in rotation here, at 2+2, and pocket5s.

    But yeah good luck with your odds, I'd really like to discuss them and I found a really interesting article on them. I'll PM an url to it to you. You should definitely click on it.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  9. #9
    Gold anonamoose's Avatar
    Reputation
    127
    Join Date
    May 2012
    Posts
    2,038
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    Quote Originally Posted by anonamoose View Post

    It'll be patched soon and in all likelihood no one that uses flash is going to get it unless you're browsing porn or clicking on shit you shouldn't be to begin with. What is the likelihood I go on youtube or twitch and get this? Probably about 0.000000001%

    I'll take those odds over uninstalling something that 90% of the websites I go to uses.

    Brb paying $200 to get a flash banner in rotation here, at 2+2, and pocket5s.

    But yeah good luck with your odds, I'd really like to discuss them and I found a really interesting article on them. I'll PM an url to it to you. You should definitely click on it.

    Name:  Tinfoil_hat.jpg
Views: 1242
Size:  34.5 KB

     
    this image gave me a virus
     
    clicking on this spoiler gave you a virus

     
    Comments
      
      tyde: lol hof

  10. #10
    Plutonium big dick's Avatar
    Reputation
    1328
    Join Date
    Feb 2013
    Location
    fuck krypt
    Posts
    11,566
    Load Metric
    67438961
    I uninstalled it, thanks for the heads up.

  11. #11
    Bronze Benford's Avatar
    Reputation
    40
    Join Date
    Oct 2013
    Posts
    213
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    So yeah just disable that shit until Adobe patches.
    Just temporarily disabling the extension on your browser toolkit should be adequate for this problem, shouldn't it? No full uninstall necessary?

     
    Comments
      
      sonatine: disabling is fine, uninstall is fine too.

  12. #12
    Photoballer 4Dragons's Avatar
    Reputation
    2686
    Join Date
    Apr 2012
    Location
    Detroit
    Posts
    10,648
    Load Metric
    67438961
    A few days ago I updated Flash and Firefox had disabled it (for security reasons). I have had it on 'allow once' since that update. At least now I know why FF did that.

  13. #13
    Diamond
    Reputation
    690
    Join Date
    Mar 2012
    Posts
    6,030
    Load Metric
    67438961
    If you are thinking that I am going to miss Tom Dwan looalike porn for some bs hacking nonsense gtfo.


    Lolwow approves this message

     
    Comments
      
      sonatine: he literally does, also that really was sinead oconnor

  14. #14
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    http://www.engadget.com/2015/07/13/f...ts-flash-dead/

    poor adobe... they had such lofty ambitions for flash too.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  15. #15
    Photoballer 4Dragons's Avatar
    Reputation
    2686
    Join Date
    Apr 2012
    Location
    Detroit
    Posts
    10,648
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    http://www.engadget.com/2015/07/13/f...ts-flash-dead/

    poor adobe... they had such lofty ambitions for flash too.

    Flash has been a demoted technology since the release of the first iPhone. It's just been a very slow death. The last Google update 'mobilegedden' was pretty much the end of it but a lot of people still haven't gotten the memo.

     
    Comments
      
      Sanlmar: Thread is as quaint as a Hellmuth vs Negraneau argument

  16. #16
    PFA Emeritus Crowe Diddly's Avatar
    Reputation
    1954
    Join Date
    Mar 2012
    Posts
    6,682
    Load Metric
    67438961
    I never installed flash for firefox, but chrome does that shit in-browser, right? is there anything you need to do for chrome to made it safe, or is it cool by design?

  17. #17
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    Quote Originally Posted by Crowe Diddly View Post
    I never installed flash for firefox, but chrome does that shit in-browser, right? is there anything you need to do for chrome to made it safe, or is it cool by design?

    chrome implements a 'sandbox' designed to contain the damage from any in browser exploit. eg java, flash, so on.

    but its become exceedingly easy to break out of that sandbox, and you can raise considerable hell from within it too.


    if youre going to disable it, just hollar at:

    chrome://plugins

    in your browser url and disable flash player. real easy.

     
    Comments
      
      Crowe Diddly: disabled rep
      
      SrslySirius:
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  18. #18
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    Quote Originally Posted by 4Dragons View Post
    Quote Originally Posted by sonatine View Post
    http://www.engadget.com/2015/07/13/f...ts-flash-dead/

    poor adobe... they had such lofty ambitions for flash too.

    Flash has been a demoted technology since the release of the first iPhone. It's just been a very slow death. The last Google update 'mobilegedden' was pretty much the end of it but a lot of people still haven't gotten the memo.

    there is a lot going on beneath the hood thats fueling the google/apple vs flash friction. remember that in the mid/late 90s, flash's whole raison d'etre was that it was going to be the heir apparent for all mobile device UIs.

    and around the time adobe needed to do a total teardown of the code and start proactively addressing security patches, two things happened:

    1) they fired all their competent managers and outsourced everything they possibly could to india.

    2) they got compromised and source code to pdf got exfiltrated (ostensibly to china), and within like days we started to see pdf zero days making the rounds.

    so it was basically a perfect storm of internal chaos that permanently back burnered a secure flash redux.

    steve jobs, for all his faults, was not an idiot and walked away from flash at that point.

    google has very serious beef with adobe/flash because google's upper tier security team ran a massive flash audit program that slid adobe exploitable issues, really asking nothing but public recognition, and adobe managed to fuck that all up because they absolutely 100% dont get how the security community thinks/works/acts, so adobe burned that bridge too.

    but none of that is whats really going to kill flash. HTML5 is going to kill flash, in the fucking head, with a tire iron, in front of its wife and children.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

  19. #19
    Photoballer 4Dragons's Avatar
    Reputation
    2686
    Join Date
    Apr 2012
    Location
    Detroit
    Posts
    10,648
    Load Metric
    67438961
    Quote Originally Posted by sonatine View Post
    Quote Originally Posted by 4Dragons View Post


    Flash has been a demoted technology since the release of the first iPhone. It's just been a very slow death. The last Google update 'mobilegedden' was pretty much the end of it but a lot of people still haven't gotten the memo.

    there is a lot going on beneath the hood thats fueling the google/apple vs flash friction. remember that in the mid/late 90s, flash's whole raison d'etre was that it was going to be the heir apparent for all mobile device UIs.

    and around the time adobe needed to do a total teardown of the code and start proactively addressing security patches, two things happened:

    1) they fired all their competent managers and outsourced everything they possibly could to india.

    2) they got compromised and source code to pdf got exfiltrated (ostensibly to china), and within like days we started to see pdf zero days making the rounds.

    so it was basically a perfect storm of internal chaos that permanently back burnered a secure flash redux.

    steve jobs, for all his faults, was not an idiot and walked away from flash at that point.

    google has very serious beef with adobe/flash because google's upper tier security team ran a massive flash audit program that slid adobe exploitable issues, really asking nothing but public recognition, and adobe managed to fuck that all up because they absolutely 100% dont get how the security community thinks/works/acts, so adobe burned that bridge too.

    but none of that is whats really going to kill flash. HTML5 is going to kill flash, in the fucking head, with a tire iron, in front of its wife and children.
    Moreover, Google can't read, parse and therefore rank anything in a flash container. Google hates flash, and every Indian restaurant in existence uses flash for their insanely non-mobile websites. Between HTML5, CSS3 and AJAX, flash has slowly been replaced, buy people like me, for the past few years.

  20. #20
    Plutonium sonatine's Avatar
    Reputation
    7375
    Join Date
    Mar 2012
    Posts
    33,417
    Load Metric
    67438961
    totally hadnt even considered that.

    you know whats funny tho... once upon a time, adobe pitched pdf as the next generation solution to html. so in adobe-mind-land, all those flash data parsing issues would have been dealt with in some sort of rich media meta solution embedded in a pdf-generated www.
    "Birds born in a cage think flying is an illness." - Alejandro Jodorowsky

    "America is not so much a nightmare as a non-dream. The American non-dream is precisely a move to wipe the dream out of existence. The dream is a spontaneous happening and therefore dangerous to a control system set up by the non-dreamers." -- William S. Burroughs

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. news flash
    By thesparten in forum Flying Stupidity
    Replies: 8
    Last Post: 04-19-2015, 11:52 AM
  2. Teacher resigns after reading poem in Freshman class.
    By Pooh in forum Flying Stupidity
    Replies: 3
    Last Post: 02-14-2015, 04:10 PM
  3. Bad Lip Reading
    By PuTTY in forum Flying Stupidity
    Replies: 0
    Last Post: 01-25-2014, 04:35 PM
  4. Replies: 16
    Last Post: 03-18-2013, 10:27 AM
  5. Adobe Creative Cloud - $50/month
    By Yebsite in forum Flying Stupidity
    Replies: 8
    Last Post: 05-31-2012, 02:41 PM