GuptiMiner: Hijacking Antivirus Updates for Distributing Backdoors and Casual Mining

Discussion in 'other security issues & news' started by FanJ, Apr 23, 2024.

  1. FanJ

    FanJ Updates Team

    Joined:
    Feb 9, 2002
    Posts:
    4,665
    Avast - April 23, 2024
    https://decoded.avast.io/janrubin/g...for-distributing-backdoors-and-casual-mining/

    Long article; read there more.
     
  2. Rasheed187

    Rasheed187 Registered Member

    Joined:
    Jul 10, 2004
    Posts:
    17,602
    Location:
    The Netherlands
    Wow, very sneaky and sophisticated attack. But clearly the MitM was done by some malware that was already running on the system, which means that eScan wasn't able to spot this malware. So that's why you should always deploy a seperate behavior blocker/EDR that augments the AV. On the other hand, eScan would be a trusted process, so this means that you should deploy a zero trust behavior blocker, I don't know if this exists at the moment.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.