Netskope Threat Labs

FILE-FLASH Adobe Flash Player FileReference type confusion attempt

IPS-SWG

1 SID: 38881

First seen
July 2024
Last seen
October 2026

Detects Flash content exploiting CVE-2016-1105, a type confusion in Flash Player's file reference handling that can allow code execution. The rule matches the crafted property assignments that public exploits use to confuse the engine's type tracking.