Threat actors have been exploiting a sophisticated zero-day vulnerability in Adobe Reader through malicious PDF documents since December 2025, with the exploit first identified on VirusTotal on November 28, 2025.
The critical takeaway here is the emergence of a sophisticated zero-day exploit in Adobe Reader actively used by threat actors, highlighting the need for continuous monitoring of platforms like VirusTotal for early detection of novel threats. As a cybersecurity professional, prioritizing the implementation of robust incident response plans and ensuring systems are updated with the latest patches can mitigate the impact of such vulnerabilities.