Kaspersky AV injected unique ID allowing sites to track users in incognito mode
121–130 of 164 posts
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#122Earlier quoted context omitted.
Every single company I worked for installed AV on our work computers, which was a huge resource hog and made the highest-specced MacBook Pros feel like cheap netbook. I suspect it is mandated by some sort of compliance requirement, and the IT departments are just ticking a box. Maybe that's how this industry is still alive.
Reading sibling comments I have an idea for a startup. Make an AV, that does not really do anything, but can be used by thoughtful companies to "tick the box". Sell licenses and then do only the minimum required for compliance. It could be described that it uses Windows Defender service to provide the basis of AV solution.
For ransomware anyway. If they're targeting you specifically they'll find out what you're running and customize against it.
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#123Do we even need A/V for windows ? I think Microsoft Defender along with "proper digital hygeine" obviates the need for dedicated A/V solutions.
I'm not sure why anyone would use any other than Defender TBH. I wonder if perhaps it's licensed separately for enterprises?
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#124Shock! Russian (and Chinese) companies cannot be trusted, neither can American ones, but we have this messy thing called "Democracy" and "rule of law" that gives us recourse and hope. They have none.
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#125Earlier quoted context omitted.
>By default, there are no services listening. Desktop linux , not "the Linux kernel". The kernel isn't amazing, but on the desktop side you regularly see downright absurd stuff like this https://scarybeastsecurity.blogspot.com/2016/11/0day-exploit... and less surprising bugs like this https://donncha.is/2016/12/compromising-ubuntu-desktop/ The quality of software outside of some widely deployed server software tends…
> you regularly see downright absurd stuff like this That's a bug which only occurs on five year old distributions and which was fixed years before any exploit was ever found. Honestly if that's being brought up as a bad example Linux is looking pretty good compared to other operating systems.
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#126Can anyone tell me how kaspersky is injecting a script into an HTTPS site? From the screenshot in the article, there doesn't appear to be a kaspersky browser extension in use. I guess it would have to be a MITM of some sort. Either by installing a cert or by getting the TLS keys from the browser, I suppose?
This was my immediate thought. Where is rewrite happening? All the options seems icky.
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#127Earlier quoted context omitted.
>By default, there are no services listening. Desktop linux , not "the Linux kernel". The kernel isn't amazing, but on the desktop side you regularly see downright absurd stuff like this https://scarybeastsecurity.blogspot.com/2016/11/0day-exploit... and less surprising bugs like this https://donncha.is/2016/12/compromising-ubuntu-desktop/ The quality of software outside of some widely deployed server software tends…
> you regularly see downright absurd stuff like this That's a bug which only occurs on five year old distributions and which was fixed years before any exploit was ever found. Honestly if that's being brought up as a bad example Linux is looking pretty good compared to other operating systems.
shellrc and profile as well as almost all core unix tools allow running arbitrary code.
You can even bend the paths of bashrc and friends so the user can't trivially inspect them without dropping to root first (at which point, arbitrary code can trivially obtain root access too)
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#128A good time to remind people that thr U.S. government is not a fan of kaspersky products.
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#129Earlier quoted context omitted.
What company is using Kaspersky? Aren't they on US security blacklists?
This may be surprising, but there's people outside the US. In fact more than 95% of people are not presently in the US.
Most installs are from individual people in and outside of the US.
Re: Kaspersky AV injected unique ID allowing sites to track users in incognito mode
#130Earlier quoted context omitted.
As a rare windows user (two or free times a year) i never trust a machine without an av. maybe things changed, but i see windows as so unsafe that i would not even login with to regular email, let alone make online payments. I simply see that os as a vulnerability by default.
Mate, seriously? Windows itself has come a long way to be considered stable. The real risk is user-space applications, like.. AV's.