New Windows Attacks Outsmart Anti-virus

According to The Register, “Researchers say they’ve devised a way to bypass protections built in to dozens of the most popular desktop anti-virus products, including those offered by McAfee, Trend Micro, AVG, and BitDefender. The method, developed by software security researchers at matousec.com, works by exploiting the driver hooks the anti-virus programs bury deep inside the Windows operating system. In essence, it works by sending them a sample of benign code that passes their security checks and then, before it’s executed, swaps it out with a malicious payload.”

56 Comments

  1. silviucc 2010-05-09 5:56 am EST
    • migeel 2010-05-09 9:18 am EST
      • MollyC 2010-05-09 10:14 pm EST
        • PlatformAgnostic 2010-05-10 7:39 am EST
      • Bill Shooter of Bul 2010-05-11 3:12 pm EST
  2. Kroc 2010-05-09 8:41 am EST
    • WereCatf 2010-05-09 9:16 am EST
      • Kroc 2010-05-09 9:49 am EST
  3. darknexus 2010-05-09 10:02 am EST
    • Kroc 2010-05-09 10:06 am EST
      • WorknMan 2010-05-09 10:24 am EST
      • darknexus 2010-05-09 11:30 am EST
  4. marcp 2010-05-09 10:48 am EST
    • WereCatf 2010-05-09 11:08 am EST
      • lemur2 2010-05-09 11:47 am EST
        • WereCatf 2010-05-09 12:04 pm EST
        • pandronic 2010-05-09 12:30 pm EST
          • lemur2 2010-05-09 12:53 pm EST
          • pandronic 2010-05-09 1:34 pm EST
          • Laurence 2010-05-09 4:10 pm EST
          • lemur2 2010-05-09 11:22 pm EST
    • moondevil 2010-05-09 11:41 am EST
      • righard 2010-05-09 11:50 am EST
        • lemur2 2010-05-09 11:55 am EST
          • WereCatf 2010-05-09 12:19 pm EST
          • lemur2 2010-05-09 12:44 pm EST
          • WereCatf 2010-05-09 1:28 pm EST
      • lemur2 2010-05-09 11:52 am EST
        • Gullible Jones 2010-05-09 2:18 pm EST
          • lemur2 2010-05-09 11:46 pm EST
        • moondevil 2010-05-09 2:42 pm EST
          • WereCatf 2010-05-09 2:50 pm EST
          • moondevil 2010-05-09 3:07 pm EST
          • WereCatf 2010-05-09 4:10 pm EST
          • moondevil 2010-05-10 5:13 am EST
          • lemur2 2010-05-09 11:37 pm EST
          • lemur2 2010-05-09 11:08 pm EST
          • moondevil 2010-05-10 5:19 am EST
          • lemur2 2010-05-10 10:38 am EST
      • roverrobot 2010-05-09 11:55 pm EST
        • moondevil 2010-05-10 5:20 am EST
          • roverrobot 2010-05-10 9:27 pm EST
  5. marcp 2010-05-09 12:24 pm EST
    • moondevil 2010-05-09 2:49 pm EST
      • yoko-t 2010-05-09 4:45 pm EST
        • moondevil 2010-05-10 5:08 am EST
  6. ballmerlikesgoogle 2010-05-10 1:02 am EST
  7. Bounty 2010-05-10 5:06 pm EST
    • lemur2 2010-05-10 11:39 pm EST
      • MamiyaOtaru 2010-05-11 1:09 am EST
  8. Gullible Jones 2010-05-10 6:40 pm EST
  9. defdog99 2010-05-11 2:48 pm EST