How a legitimate and signed driver left the doors open to threats – Week in Security with Tony Anscombe

Video

Discover the dangers of a purported ad blocker marketed as a security solution that exposes users to threats

This week, ESET researchers uncovered a troubling discovery about HotPage, a deceptive browser injector utilizing a Microsoft-signed driver from a Chinese company.

Promoted as an “Internet café security solution” with ad-blocking features, this malware actually serves game-related ads and has the ability to manipulate webpage content, redirect users, or open new tabs without consent.

Furthermore, HotPage’s security flaws grant malicious actors the opportunity to execute code at the highest privilege level on Windows systems, posing a significant threat to user safety.

Join Tony as he delves into the details of this alarming revelation and sheds light on the ongoing issue of certificate abuse. Watch the video below for more insights:

Stay connected with us on Facebook, Twitter, LinkedIn, and Instagram.


Leave a Reply

Your email address will not be published. Required fields are marked *