Author Topic: SECURITY WARNINGS & Notices - Please post them here  (Read 2896559 times)

0 Members and 4 Guests are viewing this topic.

Offline Staticguy

  • Super Poster
  • ***
  • Posts: 1427
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3420 on: February 24, 2015, 12:55:53 AM »
LOL  ;D
DELL Inspiron 15" 7000 Gaming, Windows 10 Home Version 21H1 (OS Build 19043.1237), Trend Micro Maximum Security 2021 (17.0.1333), Avast SecureLine VPN (5.12.5655), Windows Firewall, Unchecky 1.2

Offline Asyn

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 76037
    • >>>  Avast Forum - Deutschsprachiger Bereich  <<<
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3421 on: February 24, 2015, 07:55:58 AM »
Vulnerability Note VU#529496
Komodia Redirector with SSL Digestor fails to properly validate SSL and installs non-unique root CA certificates and private keys
http://www.kb.cert.org/vuls/id/529496
W8.1 [x64] - Avast Free AV 23.3.8047.BC [UI.757] - Firefox ESR 102.9 [NS/uBO/PB] - Thunderbird 102.9.1
Avast-Tools: Secure Browser 109.0 - Cleanup 23.1 - SecureLine 5.18 - DriverUpdater 23.1 - CCleaner 6.01
Avast Wissenswertes (Downloads, Anleitungen & Infos): https://forum.avast.com/index.php?topic=60523.0

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37534
  • Not a avast user

Offline Staticguy

  • Super Poster
  • ***
  • Posts: 1427
DELL Inspiron 15" 7000 Gaming, Windows 10 Home Version 21H1 (OS Build 19043.1237), Trend Micro Maximum Security 2021 (17.0.1333), Avast SecureLine VPN (5.12.5655), Windows Firewall, Unchecky 1.2

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3424 on: February 24, 2015, 01:25:23 PM »
The new Google Fuzzing Bots are doing overtime and with good results:
http://googleonlinesecurity.blogspot.nl/2015/02/more-protection-from-unwanted-software.html

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37534
  • Not a avast user
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3425 on: February 24, 2015, 06:14:09 PM »
Superfish Update - An Open Letter from Lenovo CTO Peter Hortensius
http://news.lenovo.com/article_display.cfm?article_id=1932


Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89065
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3426 on: February 24, 2015, 06:22:24 PM »
Superfish Update - An Open Letter from Lenovo CTO Peter Hortensius
http://news.lenovo.com/article_display.cfm?article_id=1932

Talk about trying to understate the seriousness of the issue:
Quote from: extract from article
This software frustrated some users without adding value to the experience so we were in the process of removing it from our preloads.

It "frustrated some users" a real master of understatement at work.

I though when there was this big a screw up the got a public flogging - or worse.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3427 on: February 24, 2015, 06:24:01 PM »
Hi DavidR,

If that is 57.000 users I would not like to be among them,

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline Pondus

  • Probably Bot
  • ****
  • Posts: 37534
  • Not a avast user
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3428 on: February 24, 2015, 06:32:16 PM »
maybe something good will come out of it

Quote
Now, we are in the midst of developing a concrete plan to address software vulnerabilities and security with defined actions that we will share by the end of the week. What I can say about this today is that we are exploring a wide range of options that include:

-creating a cleaner PC image (the operating system and software that is on your device right out of the box);

-working directly with users, privacy/security experts and others to create the right preload strategy quickly;

-and soliciting and assessing the opinions of even our harshest critics in evaluating our products going-forward.

a clean PC with only OS?...no crap software   :)


Offline bob3160

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 48568
  • 64 Years of Happiness
    • bob3160 Protecting Yourself, Your Computer and, Your Identity
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3429 on: February 24, 2015, 06:41:28 PM »
« Last Edit: February 24, 2015, 06:43:40 PM by bob3160 »
Free Security Seminar: https://bit.ly/bobg2023  -  Important: http://www.organdonor.gov/ -- My Web Site: http://bob3160.strikingly.com/ - Win 11 Pro v22H2 64bit, 16 Gig Ram, 1TB SSD, Avast Free 23.5.6066, How to Successfully Install Avast http://goo.gl/VLXdeRepair & Clean Install https://goo.gl/t7aJGq -- My Online Activity https://bit.ly/BobGInternet

Offline DavidR

  • Avast Überevangelist
  • Certainly Bot
  • *****
  • Posts: 89065
  • No support PMs thanks
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3430 on: February 24, 2015, 06:43:27 PM »
maybe something good will come out of it

Building trust again will take some time I fear - Despite their assurances, I know Lenovo is off my list for some time. When HP abandoned updating printer drivers for a new OS, my A3 business grade printer effectively became an expensive paper weight. I vowed never to purchase another HP product and that was over 10 years ago.

Sony is in a similar boat, after their rootkit fiasco, I vowed never to buy another Sony product and I haven't. Boy is that hard given the product range they have.

Quote
Now, we are in the midst of developing a concrete plan to address software vulnerabilities and security with defined actions that we will share by the end of the week. What I can say about this today is that we are exploring a wide range of options that include:

-creating a cleaner PC image (the operating system and software that is on your device right out of the box);

-working directly with users, privacy/security experts and others to create the right preload strategy quickly;

-and soliciting and assessing the opinions of even our harshest critics in evaluating our products going-forward.

a clean PC with only OS?...no crap software   :)

Well they are still going to have an AV on board according to their article as the say one of the first things that will happen on new systems is to run a scan to ensure there is no Superfish - or presumably any other malware.
Windows 10 Home 64bit/ Acer Aspire F15/ Intel Core i5 7200U 2.5GHz, 8GB DDR4 memory, 256GB SSD, 1TB HDD/ avast! free 24.3.6108 (build 24.3.8975.762) UI 1.0.801/ Firefox, uBlock Origin, uMatrix/ MailWasher Pro/ Avast! Mobile Security

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3431 on: February 24, 2015, 10:43:05 PM »
Hi DavidR,

We just could have be waiting for this outcome, at long last the eager scraping for the easy bundling money is now backfiring greartly.
Will they ever learn they cannot lead the user to that same river again and again? Always the hardest thing is to recognize  your own mistakes and learn from them. Not a lot of marketeers are ready to learn, only a few can. If that is so, they have to learn the hard way.
I do not pity them. Arrogance, dear DavidR, arrogance everywhere and contempt  for the end-user/customer that  they cannot live without.

Damian
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline mchain

  • Avast Evangelist
  • Ultra Poster
  • ***
  • Posts: 5633
  • Spartan Warrior
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3432 on: February 25, 2015, 11:16:37 AM »
Windows 10 Home 64-bit 22H2 Avast Premier Security version 24.1.6099 (build 24.1.88821.762)  UI version 1.0.797
 UI version 1.0.788.  Windows 11 Home 23H2 - Windows 11 Pro 23H2 Avast Premier Security version 24.2.6105 (build 24.1.8918.827) UI version 1.0.801

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3433 on: February 25, 2015, 12:08:58 PM »
Hi mchain,

More related SDK android malvertising.
Avast should provide proper Network Protection for it,
a typical Network Shield protection issue here.

Read: http://www.hotforsecurity.com/blog/android-malvertising-scam-promises-antivirus-delivers-lifetime-subscription-to-ringtones-7157.html   link article author: Lorezana Botezanu
So this sort of malcode has been with us since 2013 and now it went from bad to worse apparently.
In Avast we trust, unless we test.

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33905
  • malware fighter
Re: SECURITY WARNINGS & Notices - Please post them here
« Reply #3434 on: February 25, 2015, 01:07:47 PM »
Ramnit botnet was taken down by Europol, a cookie and password stealing botnet: http://blogs.technet.com/b/mmpc/archive/2011/05/10/little-red-ramnit-my-what-big-eyes-you-have-grandma.aspx

polonus
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!