Actionable Intelligence for Malware Defense.

Security Advisory » CVE-2013-3906
CVE-2013-3906

Norman Shark Advisory:  CVE-2013-3906

Microsoft has warned about a new vulnerability being actively exploited in the wild. Information about the vulnerability itself is found here:

Microsoft Security Advisory (2896666): Vulnerability in Microsoft Graphics Component Could Allow Remote Code Execution

http://technet.microsoft.com/en-us/security/advisory/2896666

 

Norman Shark has released protection against this specific exploit. Files detected will be shown as Exploit!CVE-2013-3906

 

It is worth noting that also before we released this protection, we proactively detected all exploited files known so far.  This was done through our Norman Sandbox-based shellcode detection. Names used in these cases were Shellcode.B and Shellcode.D.

“In today’s climate of persistent threats, network defense alone is no longer enough. In order to protect networks from the proliferation of targeted attacks and unknown threats, analysts need dynamic malware intelligence capabilities that allow them to respond quickly in the event of an incursion.”