|Check Point Reference:||CPAI-2014-1622|
|Date Published:||28 Jul 2014|
|Last Updated:||28 Jul 2014|
|Protection Provided by:||
|Who is Vulnerable?|| Firefox|
|Vulnerability Description||Infinity is a web exploit kit that operates by delivering a malicious payload to the victim's computer. Remote attackers can infect users with Infinity exploit kit by enticing them to visit a malicious web page. Infinity Exploit Kit installs payloads on infected computer, which could result in data leakage and remote code execution.|
This protection will detect and block Infinity exploit kit infection attempts.
In order for the protection to be activated, update your Security Gateway product to the latest IPS update. For information on how to update IPS, go to SBP-2006-05, Protection tab and select the version of your choice.
- In the IPS tab, click Protections and find the Infinity Exploit Kit Remote Code Execution protection using the Search tool and Edit the protection's settings.
- Install policy on all modules.
SmartView Tracker will log the following entries:
Attack Name: Content Protection Violation.
Attack Information: Infinity Exploit Kit Remote Code Execution