Thursday, September 2, 2010

ZeroDay: Apple Quicktime "_Marshaled_pUnk" Vulnerability Being Exploited

The latest Apple QuickTime "_Marshaled_pUnk" Backdoor / Code Execution Vulnerability is being exploited in the wild.

Note: The URL listed in the Wepawet report is malicious and should be not be viewed directly.

Wepawet is a service for detecting and analyzing web-based malware. It currently handles Flash and JavaScript files and is ran by the Computer Security Group @ University of California, Santa Barbara.

Thanks to the MDL for the alert on twitter -

