Unknown attackers have gained access to the update infrastructure for eScan antivirus, a security product created by Indian cybersecurity firm MicroWorld Technologies, in order to distribute a persistent downloader to consumer and business systems.
According to Morphisec researcher Michael Gorelik, malicious updates were sent using eScan’s authorized update infrastructure, causing multi-stage malware to spread to consumer and enterprise endpoints worldwide.
According to MicroWorld Technologies, it quickly isolated the affected update servers after discovering unauthorized access to its infrastructure, which kept them offline for more than eight hours. It has also released a patch that reverts the changes introduced as part of the malicious update. To get the remedy, affected firms are advised to get in touch with MicroWorld Technologies.
Additionally, it claimed that the attack was caused by unauthorized access to one of its regional update server settings read more about eScan Antivirus Update Servers Compromised to Deliver Multi-Stage Malware.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.
