Categories: All

Google Expert Detects Zero-Day Exploit in Avast Antivirus

SP’s: Avast was detected with a serious zero-day exploit by a Google security expert. The antivirus software was vulnerable to malicious HTTPS websites.

Antivirus Softwares are trusted heavily with the security of the computer system, especially in today’s times when the threat of viruses and malware is at the peak. Avast has been one of the best free antivirus software preferred by users in 2015, but the latest glitch in the threat detector has worried a few.
Google’s security expert Tavis Ormandy detected a zero-day exploit in the Avast antivirus, which could be identified when the users access the HTTPS connections on the Internet. This is the third zero-day exploit disclosed within an antivirus solution that too in the same month. Kaspersky and FireEye had already been detected with the vulnerabilities.

Zero-Day Vulnerability

A zero-day vulnerability is a flaw or a void in the software that remains disguised even to the vendors until exposed by attackers or any security expert. Zero-day refers to the unknown nature of the problem.

Zero-day attacks are comparatively dangerous because the extent of the offense can’t be predicted since the void in the software is also unknown.

As we saw in Kaspersky zero-day exploit, an attacker was able to infiltrate the user’s computer and get access to system-level privileges and carry out all kinds of attacks with ease.

Similarly in FireEye’s zero-day exploit, an attacker could have been able to get unauthorized remote root file system access.

In Avast’s zero-day void, the attackers could be able to execute codes on the user’s computer when the victim would access a malicious HTTPS website. This was possible because Avast was using a faulty method for analyzing X.509 certificates as it screened through the encrypted traffic for threats.

However, zero-day vulnerabilities are not easily figured out and thus the chance of a serious outbreak lessens. In both Kaspersky and FireEye cases, major attacks were not reported and neither were in the Avast’s zero-day vulnerability.

Avast has announced that they have fixed the problem and there is no action required by the user thereby.

For more updates on security issues, stay updated with us.
spatsariya

Recent Posts

Garena Free Fire Max Codes (June, 2025)

Garena Free Fire Max is one of the most popular games on the planet, and…

21 hours ago

ByteDance Nears $50B Profit Despite TikTok’s U.S. Uncertainty

The future of TikTok is a topic of heated debate among lawmakers, while users fight…

2 days ago

Meta Prepares Major AI Push With New Image, Video, and Text Models in 2026

When a company starts assigning fruits as codenames for AI models, it is an indicator…

2 days ago

Bernstein Says Nvidia Stock Is a Buy After Valuation Reset

Purchasing Nvidia at this time may be similar to requesting a dessert after a massive…

2 days ago

YouTube Suffers Global Outage, Services Quickly Restored

For a tiny fraction of time on Friday, the entire world simultaneously hit the refresh…

2 days ago

Coatue Trims Nvidia, Boosts Alphabet Stock in Strategic AI Shift

The highly influential manager of Coatue Management, Philippe Laffont also made a bold asset reallocation…

2 days ago