Become a fan of Slashdot on Facebook

 



Forgot your password?
typodupeerror
×
Security Windows IT

Critical Flaw Found In Virtually All AV Software 279

Securityemo writes "The Register is running an article about a new method to bypass antivirus software, discovered by Matousec. By sending benign code to the antivirus driver hooks, and switching it out for malicious code at the last moment, the antivirus can be completely bypassed. This attack is apparently much more reliable on multi-core systems. Here's the original research paper." El Reg notes that "The technique works even when Windows is running under an account with limited privileges," but "it requires a large amount of code to be loaded onto the targeted machine, making it impractical for shellcode-based attacks or attacks that rely on speed and stealth. It can also be carried out only when an attacker already has the ability to run a binary on the targeted PC."
This discussion has been archived. No new comments can be posted.

Critical Flaw Found In Virtually All AV Software

Comments Filter:

"The one charm of marriage is that it makes a life of deception a neccessity." - Oscar Wilde

Working...