Author Topic: AVLab tests SafeZone browser, but is it realistic?  (Read 2934 times)

0 Members and 1 Guest are viewing this topic.

REDACTED

  • Guest
AVLab tests SafeZone browser, but is it realistic?
« on: February 18, 2017, 12:33:45 AM »
Use translator or view PDF file.
-https://avlab.pl/czy-antywirusowe-moduly-do-ochrony-e-platnosci-sa-warte-swojej-ceny

Translated blog post titled "Are anti-virus modules to protect e-payments worth the money?"

I cannot make heads or tails from their methods of testing, how realistic is it and did they use Pay Mode in SafeZone browser?

Thanks for answers and I tried to de-link URL in case frowned upon.

Offline Eddy

  • Avast Evangelist
  • Maybe Bot
  • ***
  • Posts: 31079
  • Watching (over?) you
    • Malware removal, Biljart and other things.
Re: AVLab tests SafeZone browser, but is it realistic?
« Reply #1 on: February 18, 2017, 02:53:14 AM »
Just read the first few lines of that PDF and what I noticed already was this
Quote
The test was carried out to verify the protection effectiveness, which is provided by so‐called “secure browsers” against hackers attacks and data thefts, when making e‐payments and
browsing websites, which security is confirmed by the SSL certificates..
Eh, using a ssl certificate doesn't mean that security is confirmed.
Using a SSL/TLS certificate can help to secure thing, but things need to be setup and used properly.
Unfortunate it happens a lot when this is not the case.
Just to name some things Polonus and I see frequently are :
- Expired certificate(s) used.
- Chain issues
- Old protocols still used
- Server still vulnerable to poodle attack
etc.

Am I better protected against burglars when I put multiple locks on my front door?
Sure you are, but all those locks on the front door mean nothing if you leave the back door and windows open. ;)

REDACTED

  • Guest
Re: AVLab tests SafeZone browser, but is it realistic?
« Reply #2 on: February 18, 2017, 11:31:49 AM »
Would you be able to identify whether Pay Mode was activated for Test 5 and 6?

Quote
Test 5: It was checked, whether malicious software can register
keystrokes on a keyboard, when logging into a bank website.
Test 6: It was checked, whether it’s possible to take
screenshots by a malicious software, when logging into a bank
website.

Offline ondrejz

  • Browser QA Team
  • Avast team
  • Sr. Member
  • *
  • Posts: 352
    • Avast Secure Browser
Re: AVLab tests SafeZone browser, but is it realistic?
« Reply #3 on: February 24, 2017, 12:22:58 PM »
Thank you for pointing it out. Test 5 and 6 should pass with our browser. We will contact the AVlab and request more info.

REDACTED

  • Guest
Re: AVLab tests SafeZone browser, but is it realistic?
« Reply #4 on: March 07, 2017, 07:46:01 PM »
ondrejz, did you hear back from AVlab?