News

If you use any of these antivirus software, you are vulnerable to cyber attacks — NCCQ

Spread the love
2 mins read

The Nigerian Communications Commission (NCC) has issued a warning to users of AVAST and AVG antivirus software.

The NCC’s cybersecurity arm, the Computer Security Incident Response Team (CSIRT), stated that users of the aforementioned viruses are now vulnerable to cyber attacks due to a vulnerability in the system used by the two protective solutions.

According to the CSIRT, the cyber vulnerability in AVAST and AVG Antiviruses can lead to attacks on millions of devices with significant consequences for ICT users.

The threat types as a result of this vulnerability are Bypass Authentication, Remote Code Execution, and Unauthorised Access, while consequences range from Privilege Escalation, Bypass Security Products, Overwrite System Components and corrupting the Operating System.

CSIRT adds that researchers at SentinelOne security firm have also discovered two potentially damaging vulnerabilities in AVAST and AVG antivirus products that allow attackers to escalate privileges enabling them to disable security products, overwrite system components, corrupt the operating system, or perform malicious operations unimpeded.

In an advisory issued on Sunday, the CSIRT said: “Two vulnerabilities identified as CVE-2022-26522 and CVE-2022-26523 targeted the “Anti Rootkit” driver of Avast antivirus (also used by AVG) allowing an attacker with limited privileges on the targeted system to execute code in system mode (kernel mode) and take complete control of the device.

“Moreover, the vulnerabilities allow complete take-over of a device, even without privileges, due to the ability to execute code in kernel mode,” the CSIRT added in the advisory.

However, the cybersecurity centre has offered a tripartite measure that should be taken by Internet/ICT users to prevent being vulnerable to cyber threats.

They include enabling the automatic update feature for AVAST and AVG antiviruses, upgrading AVAST and AVG antiviruses to version 22.1.2504, as well as carrying out regular patch management.

Admin

Recent Posts

BREAKING: THE HATCHET PLAN OF THE ENUGU STATE APC TO TAKE OVER THE WARD POLITICAL STRUCTURE OF PDP AND USURP POWER IN 2027

It is a verifiable fact that the Honorable. Minister for Science and Technology, Chief. Engr.…

1 year ago

Outbreak: Phone accessories dealer commits suicide in Kogi

Two months after inferno ravaged the popularly GSM village in Lokoja, the Kogi State capital,…

1 year ago

Man shot dead in Anambra by policeman over N100

  A police operative attached to Otuocha Area Command, Anambra East Local Government Area of…

1 year ago

‘We can no longer feed’ – FCT residents cry out

Many residents of the Federal Capital Territory, FCT, say they are finding it difficult to…

1 year ago

Reps probe $2bn renewable energy grants, investment in Nigeria, invite stakeholders

Following an investigative hearing on the $2 billion renewable energy grants and investments in Nigeria,…

1 year ago

Court grants 76 #EndBadGovernance protesters N760m bail

Justice Obiora Egwuatu of the Federal High Court in Abuja has granted bail of N10…

1 year ago

This website uses cookies.