HackDig : Dig high-quality web security articles for hacker

Vulnerability in McAfee Antivirus Products Allows DLL Hijacking

A vulnerability in McAfee antivirus software could allow an attacker to evade self-defense mechanisms and achieve persistence, SafeBreach security researchers have discovered.The security flaw could be abused to load unsigned DLLs into multiple services that run as NT AUTHORITYSYSTEM. The exploitation, however, requires for the attacker to have admin privile
Publish At:2019-11-13 22:15 | Read:112 | Comments:0 | Tags:NEWS & INDUSTRY Vulnerabilities Virus Vulnerability

Discovering the Anti-Virus Signature and Bypassing It

In this post, I am going to go over how to find the specific Anti-Virus signature using manual testing and then show techniques that can be used to bypass them. I am a big fan of LOLBins so we are going to focus on the binary Regsvr32, which is a known binary that can be used to execute code from an external SCT file. This was first discovered back in 2016 b
Publish At:2019-10-24 14:50 | Read:201 | Comments:0 | Tags:Penetration Testing Red Team Adversarial Attack Simulation S

Do Macs need antivirus software?

One of the most common questions Intego receives is whether Macs need antivirus software. Naturally, it's fair for you to assume that our opinion may be a bit biased—not just because Intego offers antivirus software as well as a full security suite to protect Macs, but also because our malware researchers are at the front line, and regularly discover new mal
Publish At:2019-09-19 16:40 | Read:224 | Comments:0 | Tags:Software & Apps antivirus gatekeeper XProtect Virus

Do Macs need an antivirus? – Intego Mac Podcast, Episode 97

The Intego Mac Podcast episode 97 is now available!There's a question we get asked often: do Macs really need an antivirus? Many people think that Macs are immune to malware, or that security software companies even create malware to sell their products. We give a balanced answer to the question of whether you need to protect your Mac with an antivirus (see
Publish At:2019-09-19 16:40 | Read:134 | Comments:0 | Tags:Intego Mac Security Podcast Intego Mac Podcast Virus

60% of institutions in Saudi Arabia hit by malware-based attacks

According to Kaspersky Lab, sixty percent of institutions in Saudi Arabia have experienced malware-based attacks over the past 12 months. Malware continues to be one of the most dangerous threats for organizations worldwide, and data recently disclosed by security firms. According to Kaspersky Lab, Saudi Arabia is under a constant malware-based attack, the e
Publish At:2017-10-01 20:55 | Read:2701 | Comments:0 | Tags:Breaking News Cyber Crime Cyber warfare Hacking APT malware

DNA virus brings malware full circle

In what sounds like a science fiction story, scientists have successfully infected a computer using a virus encoded in DNA. The experiment was designed to prove that DNA could be used to successfully infect computers in the future. During the test, engineers created an artificial strand of DNA and “programmed” malicious code inside it. The strand was then in
Publish At:2017-09-29 04:10 | Read:2584 | Comments:0 | Tags:Malware Mobile News Antivirus cybersecurity Virus

Microsoft confirmed it won’t fix kernel issue that could be exploited to evade antivirus

A design flaw within the Windows kernel could be exploited by attackers to evade antivirus and stop them from recognizing malware. A design flaw within the Windows kernel is the root cause for antivirus stopping from recognizing malware, and the bad news is that Microsoft won’t fix it because the tech giant doesn’t consider it as a security issue
Publish At:2017-09-09 05:30 | Read:28292 | Comments:0 | Tags:Breaking News Hacking kernel Microsoft PsSetLoadImageNotifyR

"VirusTotal Windows Uploader" poor design of privacy

Somethingto share with you, which I am not sure is known enough: Recently,while I was tweaking a network monitoring systems, I noticed an upload of afile that its name included a full local Windows file path, ending with a nameof a file I uploaded to VirusTotal, using their Windows application –"VirusTotal Windows Uploader", version 2.2, which is t
Publish At:2017-09-05 07:45 | Read:2083 | Comments:0 | Tags: Virus

How did Webroot's antivirus signature update create false positives?

Webroot Inc.'s issue happened on Apr. 24 between 1800 and 2100 Coordinated Universal Time, and it tagged particular Windows OS system files as part of the W32.Trojan.Gen. Once these files were tagged as malicious, they went into quarantine, and the systems were left inoperative.An antivirus signature update was pushed down from the Webroot cloud service, upd
Publish At:2017-08-17 08:54 | Read:1583 | Comments:0 | Tags: Virus

DNA Contains Instructions for Biological and Computer Viruses

University of Washington scientists have created an experiment that shows how DNA can be used to not only create biologic viruses, but also viruses that can infect computers. Deoxyribonucleic acid (DNA) is one of the oldest methods for storing information. It is found in almost all living cells and DNA information is used in nature to determine “traits
Publish At:2017-08-12 10:40 | Read:3826 | Comments:0 | Tags:Breaking News Hacking Malware cyber security DNA encoding ma

'AVPass' Sneaks Malware Past Android Antivirus Apps

Researchers at Black Hat USA will release a toolset that studies and then cheats specific Android AV apps.A team of researchers from Georgia Tech built an Android hacking tool that snuck past nearly all of 58 Android AV antivirus programs in tests conducted via VirusTotal.Their AVPass toolkit includes a query function that vets and probes an Android AV progr
Publish At:2017-07-19 20:45 | Read:2922 | Comments:0 | Tags: Virus

How Virus Protection Software Has Evolved With the Threat Landscape

John McAfee turned some heads in the security community two years ago when he declared that the virus protection software industry, which he is widely credited with creating 30 years ago, is dead. “In 1987, new applications for the Windows platform were being developed and released at a rate of about one new application per month,” he wrote. &#
Publish At:2017-07-17 19:15 | Read:3943 | Comments:0 | Tags:Endpoint Fraud Protection Antivirus Malware Security Service

[CORE-2017-0003] - Kaspersky Anti-Virus File Server Multiple Vulnerabilities

1. *Advisory Information*Title: Kaspersky Anti-Virus File Server Multiple VulnerabilitiesAdvisory ID: CORE-2017-0003Advisory URL:http://www.coresecurity.com/advisories/Kaspersky-Anti-Virus-File-Server-Multiple-VulnerabilitiesDate published: 2017-06-28Date of last update: 2017-06-28Vendors contacted: KasperskyRelease mode: Forced release2. *Vulnerability Info
Publish At:2017-06-28 16:15 | Read:2626 | Comments:0 | Tags: Virus

WannaCry 'Scareware' Driving Downloads of Bogus Anti-Virus Apps

Fake anti-virus apps account for 12.2% of active AV apps in the Google Play store, of which roughly one in 10 are blacklisted, according to a report released today.Riding on malware fear factor, bogus "scareware" anti-virus mobile apps are infiltrating Google Play and other sites by the hundreds, as the high-profile WannaCry attack helps to prod downloads, a
Publish At:2017-06-13 19:15 | Read:2599 | Comments:0 | Tags: Virus

Adylkuzz, the new virus that follows in WannaCry’s footsteps

Adylkuzz, the malware that steals virtual money from thousands of computers All investigations seem to indicate that WannaCry, the global attack that shocked the world last week, was just the tip of the iceberg in terms of cyber-security threats. The new cyber-attack currently underway, called Adylkuzz, is potentially much more dangerous than its predecessor
Publish At:2017-05-22 22:45 | Read:2858 | Comments:0 | Tags:Malware Mobile News cybersecurity Hackers Virus

Announce

Share high-quality web security related articles with you:)

Tools

Tag Cloud