Avast Says Hackers Breached Internal Network Through Compromised VPN Profile

Peter Reutemann <[email protected]> Tue, 22 Oct 2019 08:31:00 +1300
Newsgroups gmane.org.user-groups.linux.waikato
Message-ID <CAHoQ12JVWdiq5J=OP8vR_ZAtzc8C9YkQtES0WFbnOWT6jHZf9Q@mail.gmail.com>
'Czech cyber-security software maker Avast disclosed today a security
breach that impacted its internal network. In a statement published
today, the company said it believed the attack's purpose was to insert
malware into the CCleaner software, similar to the infamous CCleaner
2017 incident. Avast said the breach occurred because the attacker
compromised an employee's VPN credentials, gaining access to an
account that was not protected using a multi-factor authentication
solution. The intrusion was detected on September 23, but Avast said
it found evidence of the attacker targeting its infrastructure going
as far back as May 14, this year. The identity of the attacker is
currently unknown, but the company said hackers didn't manage to
modify CCleaner downloads this time aroun'

-- source: https://it.slashdot.org/story/19/10/21/187216

Cheers, Peter
-- 
Peter Reutemann
Dept. of Computer Science
University of Waikato, NZ
+64 (7) 858-5174
http://www.cms.waikato.ac.nz/~fracpete/
http://www.data-mining.co.nz/
_______________________________________________
wlug mailing list -- [email protected] | To unsubscribe send an email to [email protected]
Unsubscribe: https://list.waikato.ac.nz/postorius/lists/wlug.list.waikato.ac.nz