Hackers infect users of antivirus service that delivered updates over HTTP

Hackers infect users of antivirus service that delivered updates over HTTP

Enlarge (credit: Getty Images)

man-in-the-middle (MiitM) attack that replaced the genuine update with a file that installed an advanced backdoor instead, said researchers from security firm Avast today.

eScan, an AV service headquartered in India, has delivered updates over HTTP since at least 2019, Avast researchers reported. This protocol presented a valuable opportunity for installing the malware, which is tracked in security circles under the name GuptiMiner.

Read 10 remaining paragraphs | Comments

Article Tags:
Article Categories:
Technology