Targeting the Source: FAKEAV Affiliate Networks

The operators of malicious networks are continuously monetizing their activities by propagating rogue security software that use scare tactics to trick unsuspecting users into installing and purchasing fake antivirus software, aka FAKEAV. Although there has been a decline in the FAKEAV volume as a result of the increasing pressure on payment processors that handle credit [...]

Updates on the SK Comms Data Breach

Last week we discussed the SK Communications data breach where a large number of user accounts in South Korea were exposed. The scope appears to be bigger than initially reported, as ESTsoft, a South Korean company that develops software (including antivirus, compression utility software, etc.), came forward with a public notice disclosing that one [...]

Black Hat: Researcher picks apart Sophos antivirus package

A researcher presenting at Black Hat picked apart Sophos Antivirus software and found it lacking in several areas that leave it vulnerable to attack or circumvention – something he says might apply to other antivirus vendors’ products as well, but he just hasn’t looked.

Read entire article

Malwarebytes preps enterprise edition of PC-cleaning software

Malwarebytes this fall expects to release an enterprise-grade anti-malware platform that it says doesn’t compete directly with traditional antivirus software because it relies more on observing how the malware acts and less on seeking code signatures.

Read entire article

Targeting the Source: FAKEAV and Malicious Domains

In order to monetize their malicious activities, botnet operators, spammers, and those behind blackhat search engine optimization (SEO) campaigns create accounts with a network of FAKEAV affiliates. These affiliates supply URLs to landing pages that display false antivirus scanners and that attempt to scare users into installing rogue antivirus software. If users purchase the fake product, [...]