Lenovo Superfish Visual Discovery Man In The Middle Attack
Publish Date: 21 lipca 2015
Severity: : High
Advisory Date: 21 lipca 2015
DESCRIPTION
Superfish adware installed on some Lenovo PCs install a non-unique trusted root certification authority (CA) certificate, allowing an attacker to spoof HTTPS traffic. A machine with Superfish VisualDiscovery installed will be vulnerable to SSL spoofing attacks without a warning from the browser.
INFORMATION EXPOSURE
Apply associated Trend Micro DPI Rules.
SOLUTION
Trend Micro Deep Security DPI Rule Number: 1005040