Lenovo Superfish Visual Discovery Man In The Middle Attack
Publish Date: 21 juillet 2015
Gravité: : Élevé
Date du conseil: 21 juillet 2015
Description
Superfish adware installed on some Lenovo PCs install a non-unique trusted root certification authority (CA) certificate, allowing an attacker to spoof HTTPS traffic. A machine with Superfish VisualDiscovery installed will be vulnerable to SSL spoofing attacks without a warning from the browser.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1005040