It's nice that Symantec has shared this info but their attempt at neutrality is frustrating. Based on their data they could easily state that Longhorn is a CIA group. They also didn't provide any links to WikiLeaks for people to learn more about what Vault 7 is.
Symantec found evidence of Longhorn against 40 targets spread in 16 countries
31–40 of 49 posts
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#32> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets. I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are: - patch - educate wife and children
My wife has a PhD and ran up to date Firefox with noscript, Flash disabled, and ad-blockers, uses webmail, and doesn't install software or download executables in general. She still got hacked, due to a bug in Firefox that was exploited despite having noscript and Flash disabled. How, exactly, would you have educated her?
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#33Earlier quoted context omitted.
- Don't run day to day with local admin
Many people say that the first thing they do is disable UAC. One person even told me that people who know what they are doing disable UAC. Not sure what to think of these people
https://github.com/hfiref0x/UACME currently references 8 unfixed bypasses. That's so high that I don't think this is reserved for targeted infection; it might very well happen in common malware.
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#34Too bad it's not like Microsoft's Longhorn - then it would have been delivered years late as a shadow of it's promised self (Vista) ;)
God I'm so old.
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#35Earlier quoted context omitted.
My wife has a PhD and ran up to date Firefox with noscript, Flash disabled, and ad-blockers, uses webmail, and doesn't install software or download executables in general. She still got hacked, due to a bug in Firefox that was exploited despite having noscript and Flash disabled. How, exactly, would you have educated her?
Real question: what kind of website she visited to get such infection? It's quite uncommon (even though theoretically an existing risk pretty much everywhere, and probably even not that hard to do if you control a website)
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#36Symantec's board should be hung for treason for developing and distributing weapons that eliminate American warfare capabilities.
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#37It's nice that Symantec has shared this info but their attempt at neutrality is frustrating. Based on their data they could easily state that Longhorn is a CIA group. They also didn't provide any links to WikiLeaks for people to learn more about what Vault 7 is.
I think it's smart for Symantec to remain completely neutral and unassuming.
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#38> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets. I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are: - patch - educate wife and children
My wife has a PhD and ran up to date Firefox with noscript, Flash disabled, and ad-blockers, uses webmail, and doesn't install software or download executables in general. She still got hacked, due to a bug in Firefox that was exploited despite having noscript and Flash disabled. How, exactly, would you have educated her?
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#39Earlier quoted context omitted.
Real question: what kind of website she visited to get such infection? It's quite uncommon (even though theoretically an existing risk pretty much everywhere, and probably even not that hard to do if you control a website)
reddit, imgur, news sites. It was via an ad delivered over an ad network, so who knows really.
Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries
#40Earlier quoted context omitted.
Real question: what kind of website she visited to get such infection? It's quite uncommon (even though theoretically an existing risk pretty much everywhere, and probably even not that hard to do if you control a website)
reddit, imgur, news sites. It was via an ad delivered over an ad network, so who knows really.