Wednesday, November 16, 2005

Exploit of the Sony/First 4 Internet ActiveX Control in the Wild

Active exploits of the "Uninstall" ActiveX Control Vulnerability have been found in the wild.

Websense Labs have recieved reports of websites that are using the Sony DRM "Uninstaller" vulnerability as a means to perform malicious actions on end user machines.

Remember this ActiveX control will only be present on your system if you used Sony's web-based XCP decloaker.

But why use another Sony program to decloak Sony's XCP rootkit?

I would use one of the many third-party decloaking utilities, like Sophos' UnMaking Tool.

Once it is decloaked, you still have to ask yourself the following.

"Am I comfortable with the Sony's XCP software on my computer? "

No comments:

Post a Comment