Czech software firm Avast says CCleaner was attacked — again

An unidentified attacker used stolen credentials to gain high-level privileges on the network of Czech software security vendor Avast, the company said Monday. The target of the persistent attack was likely Avast’s software-cleaning tool, CCleaner — the same product that was infiltrated in an infamous 2017 supply-chain attack breach that affected over 2 million computers. Worried that the attackers would manipulate CCleaner again, Avast said it halted an upcoming release of the product, revoked its previous security certificate, and put out a security update to users. Those measures, Avast CISO Jaya Baloo assured customers, were enough to ensure that CCleaner users were unaffected by the attack. Avast, which boasts of 400 million users of its products around the world, said it will study its network logs to learn more about the intrusion. “[I]t is clear that this was an extremely sophisticated attempt against us that had the intention to leave no traces […]

The post Czech software firm Avast says CCleaner was attacked — again appeared first on CyberScoop.

Continue reading Czech software firm Avast says CCleaner was attacked — again

CCleaner Did It Again: Users Forced to Version 5.46

CCleaner is once again being criticized. The software is forcing an update to the latest version, 5.46, even in cases when users have configured it not to undergo automatic updates. On top of that, once the upgrade is done, the…Read more
The post CCl… Continue reading CCleaner Did It Again: Users Forced to Version 5.46

CCleaner Adds Data Collection Feature With No Way to Opt-Out

Like many others, do you also believe that the popular system-cleaning tool CCleaner was performing well before Avast acquired the software from Piriform last year?

If yes, then pop-up advertisements in the previous CCleaner software version was not t… Continue reading CCleaner Adds Data Collection Feature With No Way to Opt-Out

CCleaner v5.45 Introduces Data Collection with No Way to Opt-Out

Last year, security researchers uncovered that the popular PC cleaner CCleaner was backdoored. Older versions of Piriform CCleaner -v5.33.6162 and CCleaner Cloud v1.07.3191- had been compromised, and as a result millions of users were affected. New Cha… Continue reading CCleaner v5.45 Introduces Data Collection with No Way to Opt-Out

CCleaner Attack Timeline—Here’s How Hackers Infected 2.3 Million PCs

Last year, the popular system cleanup software CCleaner suffered a massive supply-chain malware attack of all times, wherein hackers compromised the company’s servers for more than a month and replaced the original version of the software with the mali… Continue reading CCleaner Attack Timeline—Here’s How Hackers Infected 2.3 Million PCs

Free HTTPS Wildcard Certificates Are Now Available

Not-for-profit certificate authority Let’s Encrypt has started issuing wildcard HTTPS certificates for free, allowing organizations with a large number of web assets to significantly simplify their certificate management. Let’s Encrypt has… Continue reading Free HTTPS Wildcard Certificates Are Now Available