Mozilla and Opera remove Avast extensions from their add-on stores
palant.de
palant.de
The situation is desperate for AV publishers, they treat customers like sheeps, the parallel with mafia ain't too far possible to make.
It sorts of reminds me 20 years back when it was common discussion to have on how AV publishers first deployed a number of viruses to create a market.
The war for a decent form of cyber security and privacy is being lost. It's getting worse every year. More money (billions) is poured into it. To no avail.
I think we got to seriously show the example and reject closed source solutions all together, stay away from centralized providers, question everything we consume. The crowed will eventually follow.
Quite concerning a company forcing you to install this on an OS that has so little need for AV altogether.
Source: Jumpshot/Avast employees
Funny example: They (developers) could see a man from Alaska (IP based) looking for an info about yeti and then going to buy a rifle in the same session.
Worried about browser extensions?
Another problem is that popular antivirus software are also installing their own root certificate so they can MITM secure HTTPS connections.
For example Bitdefender is able to inspect and modify your Google search result without installing a browser extension. And this is a common practice. See for example:
https://blog.hboeck.de/archives/869-How-Kaspersky-makes-you-...
I HAD lots of click-happy family members, but as soon as I stopped fixing their computers and just formatting them, they stopped being so click happy.
I've recently started looking at "Neverware CloudReady" (ChromeOS for regular machines), i think that'd be the perfect OS for my father, considering almost everything he does is done through the browser, but still has a few applications that needs local execution. (And they seem to support the Crostini Linux app beta thingy that Google is working so hard on for ChromeOS).
I don't understand how you can be even the littlest bit technically literate and not know several answers to this question
1) legitimate software you normally use gets compromised. See ccleaner
2) in the IoT era, there are multiple ingress and lateral move pivot points in networks, like smart tvs
3) aside from malware, there are lots of PUPs that get bundled and eventually end up on computers
4) phishing is still a thing. Legitimate email accounts get compromised (database breaches, eg) and _people you know_ can send you viruses that look barely out of the ordinary. It happened to my users today
Even if you have gateway/hardware antivirus, defense in depth is still a thing. Dont ever tell people not to have anti-virus, thats terrible advice
https://www.zdnet.com/article/ex-top-mozilla-dev-to-windows-...
No it's not really [1]. You can check by yourself running `npm install` of any medium sized project or if you are a gamer, launch Steam with/out Defender.
Even IntelliJ warns you about Defender performance impact in the IDE.
[1] https://www.av-comparatives.org/tests/performance-test-octob...
Avira and Bitdefender manage to rank in the top tier of performance impact and protection every time I check. Both offer free products, and Bitdefender Free is considerably less annoying, in my past experiences. Free antivirus is actually one of the places where market competition forced a bunch of them to clean up their acts and offer a good non invasive product. Avira still has ads, but if you wanted one product on your pc and one on a home server, it might make sense to use two vendors products. https://www.bitdefender.com/solutions/free.html https://www.avira.com/en/free-antivirus-windows
For one off system scans, besides the two mentioned above; ESET, F-Secure, Kaspersky, Panda (and Emsisoft which has Avira and Bitdefender built in) all offer great spot check products. ADWCleaner is indispensable.
It's interesting that "anti-virus" has now become the free component in suites. You pay for things like VPN, password management, and home network security. Kaspersky goes a step further and offers VPN and password management in a free tier. https://usa.kaspersky.com/free-antivirus
The bsod error indicates it's Symantec.
My solution is that it seems to be because it's creating so many files so quickly, so I made a power profile that sets the max cpu frequency as 5%, it takes longer but doesn't break the computer.
In comparison windows defender is slow but works. Haha.
As with any security, it's a balance against convenience/speed.
https://www.youtube.com/watch?v=sE-xdb9hTqY
Avast! did much better
You mean the company discussed in the article?
https://www.technologizer.com/2014/06/05/where-have-you-gone...
I guess there's a lesson here: if you sell your name, eventually it will be used for something that will tarnish it.
- https://palant.de/2019/08/19/kaspersky-in-the-middle-what-co...
- https://palant.de/2019/11/25/kaspersky-the-art-of-keeping-yo...
- https://palant.de/2019/11/26/internal-kaspersky-api-exposed-...
- https://palant.de/2019/11/27/assorted-kaspersky-vulnerabilit...
McAfee:
- https://palant.de/2019/12/02/rendering-mcafee-web-protection...
And I expect that he will publish more articles in the future.
If you want to use anti-virus I would stick to their on-access scanning and stay away from their web protection...
Yeah it's hacky, but might work well for your usecase.
Malware can be loosely defined as any software which tries to modify the system to inject capabilities not previously present. With that definition, antivirus is malware that tries to prevent other malware from doing what it did.
(I used to lead Mozilla's efforts to extricate buggy third-party AV code from Firefox's processes)
Isn't that just software?
Very loosely.
Fundamentally power users want freedom over guard rails and casual users need those guard rails present (though in my experience there are plenty of power users who think they’re security savvy), so there’s not a one size fits all solution. At the moment I think Windows 10 S mode is a promising approach to give both groups what they want, which is also the kind of architectural solution you asked about.
I can’t remember a point when antivirus software didn’t do all that and just did the one job you wanted it to do. Since my school years I’ve always had to switch all that crap off
Sadly, I don't see that happening anytime soon because anytime I mention it to non-techical family and friends the reply I get back is a near unanimous shrug and some mumbling about their not having anything to hide. Of course, inevitably this evolves into them complaining incredulously about their phone listening to them "because so and so talked about such and such product the other day and I NEVER talk about that but when I got home all I saw were ads for that product and how dare they?!" My forehead hurts from frustratedly banging it against the wall.
What do most antiviruses do? Makes your computer run slow, spies on you, and asks you for money
USB/CDs are not as common as in the past, so people don't spread viruses from one machine to another. P2P networks and torrents are also less popular because of the wide availability of legal content at low prices.
Extensions have much bigger permissions than websites. I never used any extension in my browser. I think it is already enough, that each website knows what I do on it, what I click etc. I don't need some third party to know, what I do on all websites.
(Looks the they went to AVG which got acquired by Avast)?
>https://noyb.eu/privacy-kickstarter-first-100k-for-noyb/ Mozilla supported them with €10,000 when they were starting out.
When relying on consent as a legal basis to process personal data, companies need to comply with the stringent requirements contained in the GDPR. In May 2018, noyb filed four complaints; in France against Google, in Austria against Facebook, in Belgium against Instagram and in Germany against Whatsapp. The reason was that these major companies adopted a “take it or leave it” approach, forcing their users to consent to both their privacy policies and terms in full in order to keep using their services.
In January 2019, following our complaint the French supervisory authority (CNIL) imposed a 50 million euro fine on Google over the company’s invalid consent mechanisms. The sanction was appealed and a hearing date before the French Conseil d’Etat is yet to be set. All three other complaints (Facebook, Instagram and WhatsApp) triggered the European cooperation mechanism and are still being investigated today. We are carefully monitoring the cooperation between the Irish DPC and its counterparts and are hoping to hear back from our latest submissions in the near future.