• Categories
    Category
  • Categories
    Category
  • News
  • Tutorials
  • Forums
  • Tags
  • Users
News Comments FAQ Related Articles

New Security Breach at Avast Aimed at Its Ccleaner Software

6078

New Security Breach at Avast Aimed at Its Ccleaner Software

Avast’s internal networks were recently breached by Cybercriminals, something similar to CCleaner incident back in 2017.

According to a notification from Avast, this intrusion was detected on September 23, which they found out with help of the Czech intelligence agency, Security Information Service (BIS), the local Czech police force cybersecurity division, and an external forensics team. The intrusion was detected when a Microsoft security tool displayed an alert due to ‘malicious replication of directory services from an internal IP.’ This internal IP belonged to Avast’s VPN address range.

An employee’s VPN credentials was compromised by the attackers to gain access to an account that was not protected using a multi-factor authentication solution. Although discovered recently, Avast believes that the attackers had been attempting to gain access to the network through the compromised VPN as early as May 14 of this year.

“The user, whose credentials were apparently compromised and associated with the IP, did not have domain admin privileges. However, through a successful privilege escalation, the actor managed to obtain domain admin privileges. The connection was made from a public IP hosted out of the UK and we determined the attacker also used other endpoints through the same VPN provider,” explained Jaya Baloo, Avast Chief Information Security Officer.

Tags:
matthew
Author: 

Comments ( 0 )

No comments available

Add a comment

Frequently asked questions ( 0 )

No questions available

Related Forums in New Security Breach at Avast Aimed at Its Ccleaner Software

Related Forums in New Security Breach at Avast Aimed at Its Ccleaner Software

Web Server
christian class=
Tool to scan the vulnerabilities in web server
Apr 21, 2017
Breach-vulnerability
markdjokovic class=
clear the frozen emails in exim
Sep 26, 2018
Breach-vulnerability
joshwariddin class=
script injection vulnerabilities
Sep 25, 2018

Related News in New Security Breach at Avast Aimed at Its Ccleaner Software

Related News in New Security Breach at Avast Aimed at Its Ccleaner Software

Cisco releases patches for several of its products
Cisco releases patches for several of its products
Apr 7, 2017
Schools are the most common cybercrime targets - ESET
Schools are the most common cybercrime targets - ESET
May 3, 2017
Samba vulnerability calls to mind WannaCry fears to Linux/ UNIX
Samba vulnerability calls to mind WannaCry fears to Linux/ UNIX
May 30, 2017
Patches available for Linux Sudo vulnerability
Patches available for Linux Sudo vulnerability
Jun 1, 2017
Yahoo banishes ImageMagick software after it was found vulnerable to data exfiltration
Yahoo banishes ImageMagick software after it was found vulnerable to data exfiltration
May 24, 2017
New Security Breach at Avast Aimed at Its Ccleaner Software
New Security Breach at Avast Aimed at Its Ccleaner Software
Oct 26, 2019
8.7 million customer Data Breached from Russian ISP
8.7 million customer Data Breached from Russian ISP
Oct 15, 2019
Data Breach in Sabre: Hotel reservation information intruded
Data Breach in Sabre: Hotel reservation information intruded
May 4, 2017
Back To Top!
Rank
User
Points

Top Contributers

userNamenaveelansari
135850

Top Contributers

userNameayanbhatti
92510

Top Contributers

userNamehamzaahmed
32150

Top Contributers

1
userNamelinuxhelp
31040

Top Contributers

userNamemuhammadali
24500
Can you help Ryan ?
how to use visual traceroute tool

Am using traceroute command to check for the route. i got this tool while surfing. So pls help me out installation and usage of Visual traceroute tool.

Networking
  • Routing
  • trunk
  • Netmask
  • Packet Capture
  • domain
  • HTTP Proxy
Server Setup
  • NFS
  • KVM
  • Memory
  • Sendmail
  • WebDAV
  • LXC
Shell Commands
  • Cloud commander
  • Command line archive tools
  • last command
  • Shell
  • terminal
  • Throttle
Desktop Application
  • Linux app
  • Pithos
  • Retrospect
  • Scribe
  • TortoiseHg
  • 4Images
Monitoring Tool
  • Monit
  • Apache Server Monitoring
  • EtherApe 
  • Arpwatch Tool
  • Auditd
  • Barman
Web Application
  • Nutch
  • Amazon VPC
  • FarmWarDeployer
  • Rukovoditel
  • Mirror site
  • Chef
Contact Us | Terms of Use| Privacy Policy| Disclaimer
© 2025 LinuxHelp.com All rights reserved. Linux™ is the registered trademark of Linus Torvalds. This site is not affiliated with linus torvalds in any way.