Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Security > Advisories

November 29th, 2007, 14:39 GMT · By Bogdan Popa

WinRAR Glitch Invites Hackers Into Your Computer

SHARE:

Adjust text size:


WinRAR in action
Enlarge picture
WinRAR, the famous archiving software technology, is currently attacked as TrendLabs reported a vulnerability which can allow an attacker to obtain remote control over an affected computer. The exploit code takes advantage of a buffer flow vulnerability in WinRAR 3.50 and earlier, TrendLabs wrote. A successful exploitation can be
conducted through a Trojan horse identified by TrendLabs as TROJ_RDROPPER.A. After the infection is installed on the computer, it attempts to get a new file which opens a port to allow the attacker to obtain remote control over the affected system.

"Further analysis by TrendLabs researchers reveal that the said exploit (detected as TROJ_RDROPPER.A) arrives as a malicious .RAR file. Once the said file successfully exploits the WinRAR flaw, it proceeds to drop the file %User Temp%WINRAR.EXE, which is detected by Trend Micro as BKDR_DARKMOON.AH. The dropped backdoor, in turn, opens a random port and allows remote code execution by a malicious user," the TrendLabs blog post reads.

Just like usual, you're advised to update WinRAR to the latest version and avoid downloading untrusted RAR files coming from unknown sources.

The exploitation of the software vulnerabilities has always been one of the best ways for hackers to invade an affected system and get control over its content. And this cannot be stopped since numerous attackers from all over the world are attempting to find new flaws and glitches in all kinds of technologies meant to be downloaded and installed on the system.

That's why it is extremely important to keep your programs updated and apply the latest patches as soon as they are released. In addition, you can always update your antivirus with the most recent virus definitions to detect and stop possible infections aiming to reach the data stored on your drives.

In case you're looking for a security solution, you can try one of the programs listed on Softpedia available right here.
FILED UNDER:
winrar
security
flaw
glitch

TELL US WHAT YOU THINK:

2,565 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


WinRAR Goes Unplugged

Extra, Extra, Read All About It: Fraud, They Wrote

WinRar Trojan on the Loose

WinZip 10 Security Flaw

Symantec: Security Threat Is Gearing Toward Electronic Transactions

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM