Until very recently one AV used just HTTP for updates and didn't check signatures. Big targets + InfoSec issues = red flag.
-
-
Pokaż ten wątek
-
Usually orgs only have one AV per system + they allow fully automated updates, inc code, as that's how AV updates work. No barrier.
Pokaż ten wątek
Koniec rozmowy
Nowa rozmowa -
-
-
Did you get down to the level of asking the AV companies for their processes of how they Devops updates etc?
-
I'm actually working on that
- Pokaż odpowiedzi
Nowa rozmowa -
-
-
The standard answers were "we are the specialists" and "we really know how to protect our environment."
Dziękujemy. Twitter skorzysta z tych informacji, aby Twoja oś czasu bardziej Ci odpowiadała. CofnijCofnij
-
-
-
Another one is RMM / MSP platforms. Agents everywhere, designed to make it easy to run random scripts and installers.
Dziękujemy. Twitter skorzysta z tych informacji, aby Twoja oś czasu bardziej Ci odpowiadała. CofnijCofnij
-
-
-
Kevin, I've been following your discussion today. In general I do agree with what you're saying, but the CCleaner hack was quite different.
-
aye I need to catch up with you, I want to figure out roughly what went down - if a build server issue.
Koniec rozmowy
Nowa rozmowa -
-
-
Here's what I wrote about the attack on our forum: https://forum.avast.com/index.php?topic=208612.msg1421249#msg1421249 … We will also have a more comprehensive blog post shortly.
-
cheers - I'd be tempted to get something listed on the product website, if people are on that version they need to upgrade :)
Koniec rozmowy
Nowa rozmowa -
Wydaje się, że ładowanie zajmuje dużo czasu.
Twitter jest przeciążony lub wystąpił chwilowy problem. Spróbuj ponownie lub sprawdź status Twittera, aby uzyskać więcej informacji.
my tweets are severely limited by my lack of understanding of what I am doing.