Top Stories
|
McAfee spies malware in legit JavaScript apps4 Jan 2008 16:56 More anti-virus false alarm madnessA dodgy anti-virus update from McAfee on Wednesday wrongly identified legitimate JavaScript files as a virus in the second such screw-up by a major security vendor in less than a week. As a result of the snafu McAfee users who applied the update were falsely warned that their systems were infected by the Exploit-BO JavaScript virus after visiting sites including ESPN and Friendster, the SANS Institute's Internet Storm Centre warns. The dodgy update is DAT 5197 released on January 2. McAfee pulled the update and issued a replacement signature update (DAT 5198) shortly afterwards. Faulty anti-virus signature updates are not uncommon across the industry. Spookily rival vendor CA experienced exactly the same type of problem, again involving legitimate JavaScript files been falsely identified as viruses only on Monday. This suggests a general difficulty in tuning heuristic (generic) detection of anti-signature tools to recognise the difference between legitimate JavaScript apps and malware. ® 5 comments posted — Comment period finished SandboxPosted: 17:56 4th January 2008 Please!Posted: 19:24 4th January 2008 Sandbox...Posted: 08:00 6th January 2008 SCREAMING SCRIPTPosted: 16:43 6th January 2008 No such thing as heuristic detectionPosted: 17:29 6th January 2008
Track this type of story as a custom Atom/RSS feed or by email. Related storiesMcAfee slaps Trojan warning on MS Office Live (6 August 2008)
|
Breaking Hardware News
Intel is preparing solid-state drives with sustained read and write speeds of 240MB/s and 70MB/s, respectively.
Newsletter |