The Lab · 2026-03-26 18:27:27 · GitHub Issues
A critical security vulnerability in the widely-used PyPDF library, tracked as CVE-2026-27024, allows attackers to craft malicious PDFs that trigger an infinite loop, potentially causing denial-of-service conditions. The flaw is exploitable when accessing the children of a `TreeObject`, such as during the processing of...
The Lab · 2026-04-14 14:52:53 · TechCrunch
A critical zero-day vulnerability in Adobe's ubiquitous PDF software was actively exploited by hackers for months before the company issued a fix. The campaign, which targeted victims since at least November 2025, leveraged a previously unknown security flaw, allowing attackers to compromise systems through malicious P...
The Lab · 2026-04-14 17:22:39 · GitHub Issues
A critical security vulnerability in the widely-used PyPDF library allows attackers to craft malicious PDFs that force a target system to consume large amounts of memory, potentially leading to denial-of-service conditions. The flaw, tracked as CVE-2025-62708, is triggered when a PDF containing a specially crafted cont...
The Lab · 2026-04-15 03:03:16 · Digital Today
어도비(Adobe)의 PDF 리더 소프트웨어에서 발견된 제로데이 취약점이 최소 4개월 동안 실제 공격에 악용된 것으로 확인됐다. 이 취약점(CVE-2026-34621)은 사용자가 악성 PDF 파일을 열기만 해도 해커가 원격으로 시스템을 장악할 수 있는 심각한 위협이었다. 어도비는 최근 보안 패치를 배포했지만, 취약점이 공개되기 전까지 장기간 악용된 점은 보안 대응의 공백을 드러냈다.
문제의 취약점은 윈도우와 맥OS 환경에서 어도비 아크로뱃 DC, 리더 DC, 아크로뱃 2024 등 주요 PDF 리더 제품군에 영향을 미쳤다. 공격자는 악성 PDF 파일을 이메일 첨부나 ...
The Lab · 2026-04-16 19:23:04 · GitHub Issues
A critical security vulnerability in the widely-used PyPDF library has been exposed, allowing attackers to craft malicious PDFs that force applications into extended, resource-intensive processing states. The flaw, tracked as GHSA-jj6c-8h6c-hppx, is triggered by manipulating specific metadata within a PDF's cross-refer...
The Lab · 2026-04-19 18:22:30 · Presse-Citron
Une vulnérabilité dangereuse dans les logiciels Adobe est actuellement exploitée par des pirates pour diffuser des documents PDF malveillants. Un simple clic sur un fichier piégé peut suffire à compromettre un système. Adobe a réagi en publiant des mises à jour de sécurité urgentes pour corriger cette faille, soulignan...