Antivirus

Security community tools help intruders

To many ordinary home users and businesses, security software is nothing more than having antivirus protection and or endpoint security software. However, for enterprises the situation is more complex.I expect adversaries will continue to leverage publicly released tools, often developed by penetration testers and security researchers, to compromise and control targets worldwide. This trend, publicized most…


To many ordinary home users and businesses, security software is nothing more than having antivirus protection and or endpoint security software. However, for enterprises the situation is more complex.

I expect adversaries will continue to leverage publicly released tools, often developed by penetration testers and security researchers, to compromise and control targets worldwide. 

This trend, publicized most effectively by Mandiant’s Andrew Thompson, turns standard defensive thinking upside down. Unfortunately, it is difficult for those who work on the offensive side of the security team to recognize that this is the case.

The mantra for the past decade has been to “make intrusions more costly for the adversary.” One of the costs an intruder used to have to consider was the development of tools and techniques to compromise and control targets. 

However, today the majority of intruders operate publicly released tools to accomplish their goals. This means that intruders can radically decrease their research and development costs, as that burden has already been borne by penetration testers and security researchers.

About the author

Richard Bejtlich is principal security strategist at Corelight.

Public offensive tool releases

The argument in support of public offensive tool release usually offered by penetration testers and security researchers is that they are simply recreating capabilities already known and perhaps utilized by top tier intrusion groups. 

By releasing new capabilities, the argument goes, defenders learn what is possible and can develop mitigations that work against penetration testers and actual adversaries. 

Their scenario plays out in the following manner:

  • An enterprise deploys assets in

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

Antivirus

Think Macs don’t need antivirus? This $29.99 app begs to differ.

Macworld TL;DR: Get Moonlock: Cyber Protection for Mac for $29.99 and add Mac-specific malware defense, smart quarantine control, a privacy-focused VPN, and network/system protection tools (MSRP $54). Macs have a reputation for being “safer,” but that doesn’t mean they’re immune from today’s phishing links, sketchy downloads…

Macworld

TL;DR: Get Moonlock: Cyber Protection for Mac for $29.99 and add Mac-specific malware defense, smart quarantine control, a privacy-focused VPN, and network/system protection tools (MSRP $54).

Macs have a reputation for being “safer,” but that doesn’t mean they’re immune from today’s phishing links, sketchy downloads…
Read More

Continue Reading
Antivirus

Our 6 Favorite Free Antivirus Software of 2026

Protect your PC with free virus protection…

Protect your PC with free virus protection…
Read More

Continue Reading
Antivirus

Instagram says accounts ‘are secure’ after wave of suspicious password reset requests

If you received a bunch of password reset requests from Instagram recently, you’re not alone. Malwarebytes, an antivirus software company, initially reported that there was a data breach revealing the “sensitive information” of 17.5 million Instagram users. Malwarebytes added that the leak included Instagram usernames, physical addresses…

If you received a bunch of password reset requests from Instagram recently, you’re not alone. Malwarebytes, an antivirus software company, initially reported that there was a data breach revealing the “sensitive information” of 17.5 million Instagram users. Malwarebytes added that the leak included Instagram usernames, physical addresses…
Read More

Continue Reading
Antivirus

An Instagram data breach reportedly exposed the personal info of 17.5 million users

If you received a bunch of password reset requests from Instagram recently, you’re not alone. As reported by Malwarebytes, an antivirus software company, there was a data breach revealing the “sensitive information” of 17.5 million Instagram users. Malwarebytes added that the leak included Instagram usernames, physical addresses…

If you received a bunch of password reset requests from Instagram recently, you’re not alone. As reported by Malwarebytes, an antivirus software company, there was a data breach revealing the “sensitive information” of 17.5 million Instagram users. Malwarebytes added that the leak included Instagram usernames, physical addresses…
Read More

Continue Reading