Exploring how a lawful and officially endorsed driver exposed vulnerabilities and risks – The Security Roundup with Tony Anscombe

Video
A purported ad blocker promoted as a security solution utilizes a Microsoft-endorsed driver that inadvertently puts individuals at risk of serious threats

How a legitimate and signed driver left the doors open to threats – Week in Security with Tony Anscombe

Video

A purported ad blocker promoted as a security solution utilizes a Microsoft-endorsed driver that inadvertently puts individuals at risk of serious threats

This week, the discoveries made by ESET researchers regarding HotPage have been shared. HotPage is a browser add-on that uses a driver developed by a Chinese firm and approved by Microsoft.

This malicious software presents itself as a “Internet café security solution” equipped with ad-blocking features. However, it actually showcases gaming-related advertisements and has the ability to alter or substitute the content of a requested page, reroute the user to a different page, or launch a new page in a new tab under specific conditions.

Additionally, it unknowingly creates a vulnerability that allows other threats to execute code with the highest level of access in Windows – the SYSTEM account.

Tune in as Tony delves into the narrative and elaborates on the persistence of certificate misuse in the security landscape.

Stay connected with us on FacebookTwitterLinkedIn and Instagram.

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.