isotopp, (edited ) to random
@isotopp@chaos.social avatar

https://arstechnica.com/security/2024/04/hackers-infect-users-of-antivirus-service-that-delivered-updates-over-http/

Antivirus software is running with privileges, reading every file on the system, written too standards and methods from there early 1990's.

Using any such software is actively compromising your system security.

I cannot stress enough how retro and badly written all of this stuff is.

thomasfricke,
@thomasfricke@23.social avatar

@ljrk @isotopp

The #Antivirus Hacker Handbook

https://www.oreilly.com/library/view/the-antivirus-hackers/9781119028758/

If you can feed this into an #AI system you can make it write tons of exploits easily.

elduvelle, to privacy
@elduvelle@neuromatch.social avatar

#Avast Antivirus has been collecting and selling their users’ browsing information 😱😱😱

I need to change my antivirus ASAP!! What do you all recommend?!

#Antivirus #Privacy

From: @jon
https://social.vivaldi.net/@jon/111985903331842810

kuketzblog, to android German
@kuketzblog@social.tchncs.de avatar

Virenscanner-Apps unter Android und iOS kann man bestenfalls einen Placeboeffekt bescheinigen. Weshalb ihr sie nicht braucht und welche Tipps ihr befolgen solltet, um euch keine Schadsoftware einzufangen. 👇

https://www.kuketz-blog.de/truegerische-sicherheit-virenscanner-apps-sind-schlichtweg-ueberfluessig/

avoidthehack, to security

HP has effectively blocked the use of third party ink cartridges

@majorlinux

OTA update bricks printers using third party ink cartridges in the name of………… measures. The claim is viruses can be embedded into ink cartridges - but the likelihood is so low. Like really low. Low. Extremely low.

In other words, large company does shady thing and blames it on “

https://dcanalysts.net/hp-has-effectively-blocked-the-use-of-third-party-ink-cartridges/

sicurezza, to privacy Italian
@sicurezza@mastodon.uno avatar

Avast multata per 16,5 milioni di dollari per un software "privacy" che in realtà vendeva i dati di navigazione degli utenti

"Per anni, l'azienda di software #antivirus ha raccolto informazioni dai browser web degli utenti senza il loro consenso".

https://www.punto-informatico.it/avast-multa-ftc-vendita-dati/

Avast prometteva di proteggere la #privacy degli utenti con i suoi prodotti, ma in realtà ha fatto l’esatto opposto. Tra il 2014 e il 2020, la software house ha raccolto numerose informazioni sensibili.

#Avast #UnoPrivacy

xogium, to microsoft

Okay so I've had it with windows defender. I'm sick of it! How the hell do I entirely turn it off? I want it gone.

That it monitors my vm's drive is annoying enough especially when it keeps finding tons and tons of false positive with the things I'm messing about with, but when it decides to do the freaking same thing to my network storage, without my approval, and also removes the files without my express permission? No way, no how. Not on my watch.

Except it did just that, and I have no damn idea how to restore it. I've added exceptions for my network drives but it still does it regardless. I've disabled the damn thing using windows+i then going to security and toggling it off, only for it to toggle back on behind my back.

What, the, actual hell? Seriously, what the fuck? What should I do? I'm disconnected the drive as it is. That's pushing me back to staying to linux. Permanently this time. Nah, really, it actually is.

avoidthehack, to infosec

Ask Fitis, the Bear: Real Crooks Sign Their

Default thinking (and the intention of digital signing) should, in theory, "guarantee" the identity of developers/vendors of

Threat actors can use code signing certs to bypass common detection mechanisms - AKA your .

So, if it's signed, is it safe? Depends.

@briankrebs

https://krebsonsecurity.com/2023/06/ask-fitis-the-bear-real-crooks-sign-their-malware/

H3liumb0y, to Cybersecurity

"🔒 When Antivirus Turns Foe: The Shadowy Flipside of AV Software 🔒"

In an enlightening piece by Miguel Mendez Z., a deep dive into the paradoxical world of antivirus (AV) software reveals a concerning trend. Originally designed as cybersecurity guardians, some AV solutions have morphed into vulnerabilities themselves, exposing users to potential threats. The article dissects cases where AV software, instead of acting as a robust security layer, becomes an exploitable loophole for attackers. 🛡️💻🔓

The technical analysis provided highlights how some AV products might execute arbitrary code or misuse their elevated privileges, turning a system's defense mechanism into its Achilles' heel. It calls for a reevaluation of trust placed in these tools and emphasizes the necessity for ongoing vigilance and security hygiene.

Tags: 🌍🔐

Source: Medium - Miguel Mendez Z.

Edit: Rectified incorrect author (thank you for pointing it out @ret2bed )

neiljrubenking, to security

ESET Cyber Security for Mac lacks lab certification, fails in our phishing test, and no longer includes previously available bonus features.

https://www.pcmag.com/reviews/eset-cyber-security-for-mac

#security #antivirus #macos #pcmag

deflockcom, to ads
@deflockcom@mastodon.social avatar
UffTaTa, to random German

#37c3 #Antivirus
super Vortrag :-)

Fortbildung Cyber-Astrologie & KI-Karma

wer mal wieder so richtig über Esoterik und Homöopathie ablästern will 🙂

I LOVE IT
🙂

https://events.ccc.de/congress/2023/hub/de/event/fortbildung_cyber-astrologie_ki-karma/

mstankiewicz, (edited ) to Software Polish
@mstankiewicz@pol.social avatar

Czy używasz oprogramowania antywirusowego?

Do you use antivirus software?

Używŏsz softwaru antywirusowego?

#ankieta #poll #anketa #antywirus #antivirus #software #wirus #virus #malware

kuketzblog, to security German
@kuketzblog@social.tchncs.de avatar

Tipp Nr.22: Virenschutzprogramme. Hier scheiden sich die Geister. Wer Windows nutzt, kann den »Microsoft Defender« verwenden. Unter Linux, macOS und auch auf den mobilen Systemen Android und iOS ist ein Virenschutz nicht notwendig. Vorausgesetzt, das System/die Anwendungen sind aktuell, ist die Awareness wichtiger. Antivirenprogramme vermitteln ein trügerisches Gefühl von Sicherheit und verleiten Anwender zu unüberlegten Handlungen.

fox, to security
@fox@cytag.nl avatar

@stonehead Hi! I'm glad you asked because I'm sure there are many more people wondering about the same thing! :)

Yes, there is always a risk when you download something from open sources. However, you really cannot trust official sources as well. A good example is Sony's rootkit scandal. [1][2]

Doing basic internet "hygiene" will prevent you from most viruses, though. Having a decent virus scanner will do wonders [3], and the rest comes down to common sense. Be very careful with executables, keep your software (like PDF readers) up to date, look for settings to turn off scripts and perhaps consider sanitizing your PDFs before opening them. [4][5]

An interesting point on the aforementioned website is the following:

"With budgets getting tighter, we understand the appeal of free antivirus software. While there have been great changes in free subscriptions, the most notable being they now offer real-time malware protection, they are still minimal compared to a full antivirus security suite.

There are some exceptions, but most free antivirus programs don't offer web protections. This means they won't stop malware from downloading if you accidentally click on a malicious link. They will snatch it before it has a chance to infract your computer, but we feel better than a threatening file doesn't get that far into the process."

I hope this helped you on your way, and if not, do let me know! :)


[1] https://www.theregister.com/2005/11/01/sony_rootkit_drm
[2] https://www.theregister.com/2021/12/10/autorunning_away/
[3] https://www.techradar.com/best/best-free-antivirus (go to the product's websites manually to avoid tracking through links)
[4] https://github.com/Kerbalnut/Sanitize-PDF
[5] https://www.webpdf.de/en/pdf-redact-and-sanitize


ma1, to microsoft
@ma1@todon.eu avatar

Ouch 🤬
No tor.exe change between @torproject Browser 12.5.5 and 12.5.6: just a MS Defender affecting Win64 only.
Either add an exception or work-around by temporarily switching to the 32-bit version (thanks @a000d4f7a91939d0e71df1646d7a48 for this hint).
https://support.torproject.org/tbb/tbb-10/
(no) (bad)

techygeek, to windows
neiljrubenking, to security

Avast One brings together antivirus, VPN, and a collection of other security, privacy, and performance features for all your devices, but you get more for your money from other cross-platform suites.

https://www.pcmag.com/reviews/avast-one

neiljrubenking, to security

ESET Home Security Premium enhances the impressive features in its entry-level suite with encryption and a cross-platform password manager but doesn't add enough value to make upgrading worthwhile.

https://www.pcmag.com/reviews/eset-smart-security-premium

#security #antivirus #securitysuite #passwordmanager #pcmag

ITF_TECH, to windows
@ITF_TECH@mastodon.social avatar

A Windows worm called Raspberry Robin has been resurrected to help spread malware and ransomware across your devices. Make sure you've got good protection and be careful what you click and download

#Windows #CyberSecurity #AntiVirus https://www.tomsguide.com/computing/malware-adware/hackers-are-using-this-little-know-file-type-to-drop-a-nasty-windows-worm-on-vulnerable-pcs-how-to-stay-safe

StevenSaus, to random
@StevenSaus@faithcollapsing.com avatar

From 11 Apr: Defences Down! ClamTk is No Longer Maintained - It’s always sad to see a long-standing bit of open-source software put itself out to pasture (a euph... https://www.omgubuntu.co.uk/2024/04/clamtk-is-no-longer-maintained

slink, to infosec
@slink@fosstodon.org avatar

Does anybody know of a good overview of cases where #antivirus and other #EndpointSecurity has failed and/or been the problem rather than the solution? #infosec

publicvoit, (edited ) to privacy
@publicvoit@graz.social avatar

When products are the :

FTC to ban from selling browsing data for advertising purposes
https://www.bleepingcomputer.com/news/security/ftc-to-ban-avast-from-selling-browsing-data-for-advertising-purposes/

Edit: just to be clear: most anti-malware products deployed major security issues like open backdoors on many Millions of computers in the past. It's a business where users pay for a false feeling of security and tend to take higher risks. Almost all companies that got had anti-malware in place.

jkn, to reddit
@jkn@mastodon.online avatar

Having an installed on your computer is now a reliable test for computer illiteracy.

bsm, to Cybersecurity German
@bsm@swiss.social avatar

Ich bin seit einem halben Jahr daran, die automatische Zahlung per Kreditkarte für ein schon längstens gekündigtes Abonnement deaktivieren zu lassen und gleichzeitig die Kreditkartendaten löschen zu lassen (da man dies nicht selbst tun kann!).

Die Firma: bzw.

Ich dreh jetzt langsam am Rad. Gestern hatte ich erneut einen Eintrag auf meiner Kreditkarte. - Was für eine Drecksfirma!

lsdm, to Cybersecurity French
@lsdm@mamot.fr avatar

Avast écope d’une lourde amende, l’antivirus a vendu vos données de navigation.

Mal anonymisées, ces informations ont mis en danger la vie privée des internautes.

#Avast #antivirus #cybersecurity #FTC #Jumpshot #smartphone #PC

https://lsdm.live/modules/news/article.php?storyid=4921

  • All
  • Subscribed
  • Moderated
  • Favorites
  • megavids
  • rosin
  • mdbf
  • khanakhh
  • tacticalgear
  • modclub
  • DreamBathrooms
  • thenastyranch
  • magazineikmin
  • InstantRegret
  • Youngstown
  • osvaldo12
  • slotface
  • kavyap
  • JUstTest
  • cubers
  • cisconetworking
  • tester
  • anitta
  • ngwrru68w68
  • everett
  • ethstaker
  • Durango
  • normalnudes
  • provamag3
  • Leos
  • GTA5RPClips
  • lostlight
  • All magazines