Live data from Hacker News

Symantec found evidence of Longhorn against 40 targets spread in 16 countries

symantec.com

1–10 of 49 posts

Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries

#2
> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets.

I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are:

- patch

- educate wife and children

Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries

#4

> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets. I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are: - patch - educate wife and children

While I think that consumer antivirus is pretty terrible, I think it is hard to say that antivirus companies don't add any value.

I'd highly recommend reading up on Stuxnet and the work done by security firms (many of whom would qualify as antivirus corporations) to identify the source, spread, impact, and intent behind one of the most advanced technical attacks ever identified.

Fun Wired article on the topic: https://www.wired.com/2011/07/how-digital-detectives-deciphe...

Also a book: http://a.co/0WGJm1H

Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries

#6
post #5

I wonder if qihoo 360 or other Chinese security companies would post such blog entries on Chinese intelligence malware and operations in a similar vain. Same for Russia.

Kaspersky just announced a comprehensive report on the Moonlight Maze Russian government campaign against U.S. military networks in the 1990s.

Kaspersky has also published at least two recent (last 10 years) campaigns attributed to the Russian government or state-aligned actors.

Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries

#7

> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets. I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are: - patch - educate wife and children

- Don't run day to day with local admin

Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries

#9

> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets. I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are: - patch - educate wife and children

Most attacks do not involve 0-days. Being protected against many known kinds of attacks is valuable.

Re: Symantec found evidence of Longhorn against 40 targets spread in 16 countries

#10

> [Longhorn] has used a range of back door Trojans in addition to zero-day vulnerabilities to compromise its targets. I genuinely don't see the added value of antivirus corporations in this or anywhere else. Better tactics are: - patch - educate wife and children

While I think that consumer antivirus is pretty terrible, I think it is hard to say that antivirus companies don't add any value. I'd highly recommend reading up on Stuxnet and the work done by security firms (many of whom would qualify as antivirus corporations) to identify the source, spread, impact, and intent behind one of the most advanced technical attacks ever identified. Fun Wired article on the topic: https:…

Thank you, that was a nice read.
Post reply on HN