Zero-dayApr 13, 2026
Adobe Patches Actively Exploited Zero-Day That Lingered for Months
Adobe patches actively exploited zero-day in Acrobat and Reader after months of attacks.
Summary
Adobe has released a patch for a zero-day vulnerability in Acrobat and Reader that attackers have been actively exploiting through malicious PDF files for at least four months. The flaw allowed remote code execution via crafted PDFs, making it a critical threat to widespread users. The extended exploitation window before disclosure highlights the challenge of detecting sophisticated zero-day abuse in the wild.
Indicators of Compromise
- malware — Malicious PDF exploits
Entities
Adobe (vendor)Adobe Acrobat (product)Adobe Reader (product)