Carnegie Mellon University Website Home Page
 

Security Alert: Widespread Adobe Flash Web Attacks

Who: Everyone

What:  Widespread Adobe Flash Web Attacks

When:  May 29, 2008

How:
Widespread Adobe Flash Web Attacks Computers running older versions of Adobe Flash Player are vulnerable to exploits.  Criminals have infiltrated many legitimate websites and are using them to deliver Adobe Flash attacks.  The most serious of these vulnerabilities may allow malicious attackers to take complete control of an affected system when you visit an infiltrated or maliciously crafted website.  The latest version of Adobe Flash Player is not vulnerable.  Update now.

What You Need To Do:

If you suspect your computer has already been compromised, STOP! Read and follow Responding to a Compromised Computer.

If your computer is managed by a Carnegie Mellon departmental computing administrator, please consult that person before making any system changes.

Follow the detailed steps below:

  1. Check what version of Adobe Flash Player you have
    Visit About Adobe Flash Player

  2. Install the latest Adobe Flash Player if out of date
    Visit Install Adobe Flash Player

  3. Repeat steps 1. and 2. for each web browser you use (i.e. Internet Explorer, Firefox, Safari, etc...)

Contact:
Please direct any questions or comments to the Computing Services Help Center at x8-HELP (4357) or advisor@andrew.cmu.edu, or to your departmental administrator or DSP consultant.

More Information:
For more technical information, visit the following: